Dobrý den, mám problém, který jsem již psal sem: viewtopic.php?f=39&p=352177#p352177
Jistá milá slečna mi poradila, ať sem vložím log z HJT:
Logfile of Trend Micro HijackThis v2.0.3 (BETA)
Scan saved at 18:31:39, on 27.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
C:\ASUS.SYS\config\DVMExportService.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Last.fm\LastFM.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Skype\Toolbars\Shared\SkypeNames.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\User\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask.com Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Ask.com Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Přidat do blokovaných reklamních lišt - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O9 - Extra button: Statisktika ochrany webového provozu - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: QIP Infium - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - C:\Program Files\QIP Infium\infium.exe (HKCU)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll,wbsys.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
--
End of file - 7472 bytes
Zamrznutí PC. Vyřešeno
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Zamrznutí PC.
OT: Myslím že "alenka" tě za tu milou slečnu moc nepochválí 

V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
- alenka_v_říši_divů
- Level 6
- Příspěvky: 3201
- Registrován: únor 09
- Bydliště: Brno
- Pohlaví:
- Stav:
Offline
Re: Zamrznutí PC.
Mrtvo...
Tak zavři aplikace /krom HJT/, odpoj se od netu a fixni:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\User\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask.com Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Ask.com Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Stáhni si ATF Cleaner
Spust a stiskni na select all found
Jestli jedeš přes Mozilu Firefox klikni na Firefox nahoře a vyber: Select All, potom klikni na Empty Selected.
Jestli jedeš přes Operu klikni nahoře na Operu a vyber: Select All, potom klikni na Empty Selected.
Až se to vyčistí klikni na exit pro ukončení.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
**Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware**, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
//no já si moc jako milá slečna nepřipadám
Tak zavři aplikace /krom HJT/, odpoj se od netu a fixni:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Documents and Settings\User\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask.com Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Ask.com Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Stáhni si ATF Cleaner
Spust a stiskni na select all found
Jestli jedeš přes Mozilu Firefox klikni na Firefox nahoře a vyber: Select All, potom klikni na Empty Selected.
Jestli jedeš přes Operu klikni nahoře na Operu a vyber: Select All, potom klikni na Empty Selected.
Až se to vyčistí klikni na exit pro ukončení.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
**Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware**, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
//no já si moc jako milá slečna nepřipadám

- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zamrznutí PC.
Někdo umřel...?
@Žbeky: Než fixneš, odinstaluj si Ask Toolbar

@Žbeky: Než fixneš, odinstaluj si Ask Toolbar
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Zamrznutí PC.
Tady:
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3803
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
27.2.2010 20:19:58
mbam-log-2010-02-27 (20-19-58).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 105522
Uplynulý čas: 2 minute(s), 55 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
Postupoval jsem podle návodu. Co teď?
Malwarebytes' Anti-Malware 1.44
Verze databáze: 3803
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
27.2.2010 20:19:58
mbam-log-2010-02-27 (20-19-58).txt
Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 105522
Uplynulý čas: 2 minute(s), 55 second(s)
Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 0
Infikované soubory: 0
Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)
Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)
Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)
Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)
Postupoval jsem podle návodu. Co teď?
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zamrznutí PC.
Vypni rezidentní štít antiviru (pokud máš tak i antispyware).
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Stáhni si ComboFix (by sUBs)
nebo ComboFix (subs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Zamrznutí PC.
Tak tady to je:
ComboFix 10-02-27.04 - User 27.02.2010 21:41:14.1.4 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3063.2583 [GMT 1:00]
Spuštěný z: e:\dokumenty\Downloads\ComboFix.exe
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\regedit.com
c:\windows\system32\Cache
c:\windows\system32\sqlite3.dll
c:\windows\system32\taskmgr.com
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
.
2010-02-27 17:29 . 2010-02-27 17:29 -------- d-----w- c:\program files\TrendMicro
2010-02-27 10:01 . 2010-02-27 10:02 5959299 ----a-w- c:\windows\REGBK01.ZIP
2010-02-26 21:02 . 2010-02-26 21:02 -------- d-----w- c:\program files\RivaTuner v2.24
2010-02-19 15:24 . 2009-09-04 15:25 253952 ----a-w- c:\windows\ATKKBService.exe
2010-02-19 15:16 . 2010-02-19 15:16 -------- d-----w- c:\program files\DNA
2010-02-18 22:17 . 2010-02-18 22:17 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-18 18:27 . 2006-06-14 12:44 12288 ----a-r- c:\windows\system32\drivers\EIO_XP.sys
2010-02-18 18:18 . 2010-02-24 21:34 -------- d-----w- c:\program files\RivaTuner
2010-02-18 18:05 . 2010-02-19 15:29 -------- d-----w- c:\program files\Software Informer
2010-02-18 17:51 . 2010-02-18 17:51 -------- d--h--w- c:\temp\dvmexp
2010-02-18 17:51 . 2010-02-18 18:01 -------- d--h--w- c:\temp\tmpdvmexp
2010-02-18 17:51 . 2010-02-18 18:01 -------- d-----w- C:\temp
2010-02-18 17:51 . 2010-02-18 18:01 -------- d-----w- C:\dvmexp
2010-02-18 17:50 . 2010-02-18 17:50 -------- d-----w- C:\ASUS.000
2010-02-18 17:50 . 2010-02-19 13:14 -------- d-----w- C:\ASUS.SYS
2010-02-18 17:44 . 2010-02-18 17:44 -------- d-----w- c:\program files\Downloaded Installations
2010-02-17 22:56 . 2010-02-17 22:56 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-02-17 22:56 . 2010-02-17 22:56 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-02-17 22:56 . 2010-02-17 22:56 669184 ----a-w- c:\windows\system32\pbsvc.exe
2010-02-17 22:56 . 2010-02-17 22:56 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-02-16 18:09 . 2010-02-16 18:09 -------- d-----w- c:\documents and settings\LocalService\Plocha
2010-02-16 18:00 . 2010-02-16 18:04 -------- d-----w- c:\program files\Xfire
2010-02-10 14:17 . 2010-02-10 14:49 -------- d-----w- c:\program files\Mass Effect
2010-02-05 20:00 . 2009-12-17 23:14 30536 ----a-w- c:\windows\system32\TURegOpt.exe
2010-02-05 20:00 . 2009-12-17 23:08 30024 ----a-w- c:\windows\system32\uxtuneup.dll
2010-02-05 18:40 . 2008-04-14 12:00 80896 -c--a-w- c:\windows\system32\dllcache\charmap.exe
2010-02-05 18:39 . 2008-04-14 12:00 7680 -c--a-w- c:\windows\system32\dllcache\pwsdata.dll
2010-02-05 18:38 . 2010-02-17 22:56 -------- d-----w- c:\windows\system32\Logfiles
2010-02-05 18:38 . 2010-02-05 18:43 -------- d-----w- C:\Inetpub
2010-02-05 16:16 . 2010-02-05 16:16 -------- d-----w- c:\program files\Yamicsoft
2010-02-05 12:37 . 2006-01-10 08:50 24576 ----a-r- c:\windows\system32\AsIO.dll
2010-02-05 12:37 . 2007-12-17 09:14 12400 ----a-r- c:\windows\system32\drivers\AsIO.sys
2010-02-05 12:37 . 2008-01-04 12:34 11832 ----a-w- c:\windows\system32\drivers\AsInsHelp64.sys
2010-02-05 12:37 . 2008-01-04 12:34 10216 ----a-w- c:\windows\system32\drivers\AsInsHelp32.sys
2010-02-05 12:37 . 2010-02-19 15:31 -------- d-----w- c:\program files\ASUS
2010-02-05 12:33 . 2010-02-05 12:33 -------- d-----r- c:\windows\AsDmiHtm
2010-02-04 20:48 . 2008-04-14 07:52 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2010-02-04 20:48 . 2008-04-14 07:52 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll
2010-02-04 20:48 . 2001-10-24 11:25 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2010-02-04 20:46 . 2001-08-17 19:13 16925 -c--a-w- c:\windows\system32\dllcache\w940nd.sys
2010-02-04 20:45 . 2001-10-24 11:25 26624 -c--a-w- c:\windows\system32\dllcache\umaxu22.dll
2010-02-04 20:44 . 2001-08-17 19:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2010-02-04 20:43 . 2001-10-24 10:43 285792 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2010-02-04 20:42 . 2001-10-24 11:25 33792 -c--a-w- c:\windows\system32\dllcache\smb0w.dll
2010-02-04 20:41 . 2001-10-24 11:02 6784 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2010-02-04 20:40 . 2001-08-17 19:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2010-02-04 20:39 . 2008-04-13 23:11 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2010-02-04 20:38 . 2001-08-17 21:05 31872 -c--a-w- c:\windows\system32\dllcache\ovce.sys
2010-02-04 20:37 . 2001-08-17 19:20 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys
2010-02-04 20:36 . 2001-10-24 11:01 75520 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2010-02-04 20:35 . 2001-08-17 20:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2010-02-04 20:34 . 2008-04-14 07:51 254464 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2010-02-04 20:33 . 2008-04-14 12:00 81920 -c--a-w- c:\windows\system32\dllcache\ieencode.dll
2010-02-04 20:32 . 2008-04-13 22:53 1041536 -c--a-w- c:\windows\system32\dllcache\hsfdpsp2.sys
2010-02-04 20:31 . 2001-10-24 10:58 907456 -c--a-w- c:\windows\system32\dllcache\hcf_msft.sys
2010-02-04 20:30 . 2001-08-17 20:52 7040 -c--a-w- c:\windows\system32\dllcache\exabyte2.sys
2010-02-04 20:29 . 2001-08-17 21:07 20192 -c--a-w- c:\windows\system32\dllcache\dpti2o.sys
2010-02-04 20:28 . 2001-10-24 11:24 216576 -c--a-w- c:\windows\system32\dllcache\cpscan.dll
2010-02-04 20:27 . 2008-04-13 23:16 17024 -c--a-w- c:\windows\system32\dllcache\bthenum.sys
2010-02-04 20:26 . 2001-10-24 11:24 61440 -c--a-w- c:\windows\system32\dllcache\acerscad.dll
2010-02-04 17:29 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-04 17:29 . 2010-02-04 17:30 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-02-04 17:29 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-02-04 11:15 . 2010-02-04 17:18 -------- d-----w- c:\windows\SxsCaPendDel
2010-02-04 09:55 . 2010-02-04 09:56 5593752 ----a-w- c:\windows\REGBK00.ZIP
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\VDLL.DLL
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\system32\runouce.exe
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\rundll16.exe
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\RUNDL132.EXE
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\logo1_.exe
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\logo_1.exe
2010-02-04 09:49 . 2010-02-04 09:49 626688 ----a-w- c:\windows\system32\msvcr80.dll
2010-02-04 09:49 . 2010-02-04 09:49 548864 ----a-w- c:\windows\system32\msvcp80.dll
2010-02-04 09:49 . 2010-02-04 09:49 28672 ----a-w- c:\windows\system32\eEmpty.exe
2010-02-04 09:49 . 2008-04-14 12:00 225792 ----a-w- c:\windows\R.COM
2010-02-04 09:49 . 2008-04-14 12:00 183808 ----a-w- c:\windows\system32\T.COM
2010-02-04 09:41 . 2010-02-04 09:41 -------- d-----w- c:\documents and settings\User\DoctorWeb
2010-02-04 09:37 . 2010-02-05 12:26 -------- d-----w- c:\program files\Microsoft Bootvis
2010-02-03 18:05 . 2010-02-03 18:17 -------- d-----w- c:\program files\Mass Effect 2
2010-02-03 16:39 . 2010-02-10 14:38 -------- d-----w- c:\program files\Common Files\BioWare
2010-02-02 23:04 . 2010-02-02 23:04 278984 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-02-02 23:04 . 2010-02-02 23:04 25416 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-02-02 22:55 . 2010-02-19 14:52 -------- d-----w- c:\program files\Zaklínač
2010-02-02 22:08 . 2010-02-02 22:08 -------- d-----w- c:\program files\Electronic Arts
2010-02-02 21:26 . 2010-02-02 21:26 -------- d-----w- c:\program files\2K Games
2010-02-02 21:25 . 2010-02-02 21:25 -------- d-----w- c:\program files\DIFX
2010-02-02 21:25 . 2010-02-02 21:25 -------- d-----w- c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
2010-02-02 19:25 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-02-02 19:25 . 2010-02-02 19:25 -------- d-----w- c:\program files\CPUID
2010-02-02 19:23 . 2010-02-04 22:26 71326 ----a-w- c:\windows\BricoPackUninst.cmd
2010-02-02 19:21 . 2010-02-04 22:26 5415 ----a-w- c:\windows\BricoPackFoldersDelete.cmd
2010-02-02 19:21 . 2010-02-04 22:24 -------- d-----w- c:\windows\BricoPacks
2010-02-02 19:16 . 2003-02-26 21:27 36864 ----a-w- c:\windows\system32\wbsys.dll
2010-02-02 19:16 . 2010-02-03 12:03 -------- d-----w- c:\program files\AlienGUIse
2010-02-02 19:16 . 2010-02-02 19:16 -------- d-----w- c:\program files\Common Files\Stardock
2010-02-02 19:11 . 2010-02-02 19:11 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-02 19:11 . 2010-02-02 19:11 -------- d-----w- c:\program files\Dolphin Pod
2010-02-02 19:11 . 2010-02-02 19:51 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-02-02 18:52 . 2010-02-02 18:52 -------- d-----w- c:\program files\Recuva
2010-02-02 18:51 . 2010-02-02 18:51 -------- d-----w- c:\program files\Defraggler
2010-02-02 18:48 . 2010-02-18 18:10 -------- d-----w- c:\program files\Speccy
2010-02-02 17:13 . 2010-02-02 17:13 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----w- c:\program files\Common Files\Skype
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----r- c:\program files\Skype
2010-02-02 17:07 . 2010-02-02 17:07 -------- d-----w- c:\program files\QIP Infium
2010-02-02 16:56 . 2010-02-02 17:33 -------- d-----w- c:\program files\IObit
2010-02-02 16:51 . 2010-02-27 19:25 -------- d-----w- c:\program files\Steam
2010-02-02 16:44 . 2010-02-02 16:44 -------- d-----w- c:\program files\Last.fm
2010-02-02 16:42 . 2010-02-26 21:04 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-02-02 16:40 . 2010-02-02 16:40 -------- d-----w- c:\program files\Winamp Detect
2010-02-02 16:39 . 2010-02-02 16:41 -------- d-----w- c:\program files\Winamp
2010-02-02 16:35 . 2004-11-22 11:07 2304 ----a-w- c:\windows\system32\Machnm32.sys
2010-02-02 16:35 . 2007-02-09 11:17 17465 ----a-w- c:\windows\system32\drivers\pivot.sys
2010-02-02 16:35 . 2007-02-09 11:17 62009 ----a-w- c:\windows\system32\WPFB.DLL
2010-02-02 16:35 . 2007-02-09 11:17 11323 ----a-w- c:\windows\system32\drivers\pivotmou.sys
2010-02-02 16:35 . 2010-02-02 16:35 -------- d-----w- c:\program files\Portrait Displays
2010-02-02 16:24 . 2010-02-02 16:24 -------- d-----w- c:\program files\PeaZip
2010-02-02 16:20 . 2010-02-02 16:20 -------- d-----w- c:\program files\Common Files\xing shared
2010-02-02 16:18 . 2010-02-02 16:18 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-02-02 16:18 . 2010-02-02 16:18 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-02-02 16:18 . 2010-02-02 16:18 -------- d-----w- c:\program files\Real
2010-02-02 16:18 . 2010-02-02 16:23 -------- d-----w- c:\program files\Common Files\Real
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\VideoLAN
2010-02-02 16:12 . 2010-02-02 16:14 -------- d-----w- c:\program files\DivX
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\Common Files\DivX Shared
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-27 20:40 . 2008-04-14 12:00 97980 ----a-w- c:\windows\system32\perfc005.dat
2010-02-27 20:40 . 2008-04-14 12:00 481042 ----a-w- c:\windows\system32\perfh005.dat
2010-02-27 20:34 . 2010-02-02 15:01 5152 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2010-02-27 20:34 . 2010-02-02 15:01 47432 --sha-w- c:\windows\system32\drivers\fidbox.idx
2010-02-19 15:31 . 2010-02-01 16:32 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-04 22:26 . 2008-04-14 12:00 219648 ----a-w- c:\windows\system32\uxtheme.dll
2010-02-03 16:13 . 2010-02-01 16:40 -------- d-----w- c:\program files\EXPERTool
2010-02-02 21:25 . 2010-02-01 16:47 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Common Files\Portrait Displays
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Acer Display
2010-02-02 15:57 . 2010-02-02 15:57 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2010-02-02 15:15 . 2008-01-29 17:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2010-02-02 12:47 . 2010-02-01 16:45 -------- d-----w- c:\program files\NVIDIA Corporation
2010-02-02 12:47 . 2010-02-01 16:47 -------- d-----w- c:\program files\AGEIA Technologies
2010-02-02 08:28 . 2010-02-01 16:31 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-01 16:34 . 2010-02-01 16:34 -------- d-----w- c:\program files\Realtek
2010-02-01 16:32 . 2010-02-01 16:31 -------- d-----w- c:\program files\VIA
2010-02-01 16:25 . 2010-02-01 16:25 -------- d-----w- c:\program files\Intel
2010-02-01 16:16 . 2010-02-01 16:16 -------- d-----w- c:\program files\microsoft frontpage
2010-02-01 16:16 . 2010-02-01 16:16 8738 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-02-01 16:16 . 2010-02-01 16:16 2112 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-02-01 16:16 . 2010-02-01 16:16 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-02-01 16:13 . 2010-02-01 16:13 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-22 01:37 . 2010-01-22 01:37 41872 ----a-w- c:\windows\system32\xfcodec.dll
2010-01-12 11:03 . 2009-10-05 10:10 6359168 ----a-w- c:\windows\system32\nv4_disp.dll
2010-01-12 11:03 . 2009-10-05 10:10 10276768 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-01-11 21:17 . 2010-01-11 21:17 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-01-11 21:17 . 2010-01-11 21:17 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-01-11 21:17 . 2010-01-11 21:17 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-01-11 21:17 . 2010-01-11 21:17 13666408 ----a-w- c:\windows\system32\nvcpl.dll
2010-01-11 21:17 . 2010-01-11 21:17 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-01-11 21:17 . 2010-01-11 21:17 81920 ----a-w- c:\windows\system32\nvwddi.dll
2009-12-31 16:50 . 2008-04-14 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2010-02-04 22:24 916480 ----a-w- c:\windows\system32\SETD.tmp
2009-12-21 19:08 . 2010-02-04 22:24 1208832 ----a-w- c:\windows\system32\SETE.tmp
2009-12-21 19:08 . 2008-04-14 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2009-12-21 19:08 . 2010-02-04 22:24 5942784 ----a-w- c:\windows\system32\SET10.tmp
2009-12-17 07:42 . 2010-02-05 18:40 343552 ----a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:10 . 2008-04-14 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
2009-12-09 10:11 . 2008-04-14 12:00 2147328 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-12-09 10:11 . 2008-04-14 08:06 2025984 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-12-04 18:22 . 2008-04-14 12:00 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-10-05 17:34 . 2010-02-02 17:08 118000 ----a-w- c:\program files\mozilla firefox\components\qippipe.dll
.
------- Sigcheck -------
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe" [2009-07-15 33636352]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2010-02-02 201992]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-01-11 13666408]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-2-2 805392]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2008-05-02 01:42 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 22:34 24576 ----a-w- c:\program files\AlienGUIse\fastload.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Documents and Settings\\All Users\\Data aplikací\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 2009\\Czech\\setup.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Mass Effect 2\\Binaries\\MassEffect2.exe"=
"c:\\Program Files\\Mass Effect 2\\MassEffect2Launcher.exe"=
"c:\\Program Files\\Mass Effect\\Binaries\\MassEffect.exe"=
"c:\\Program Files\\Mass Effect\\MassEffectLauncher.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_Launcher.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_DX11.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx9.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx10.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Launcher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead 2\\left4dead2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead\\left4dead.exe"=
"e:\\Program Files\\LOTR The Battle for Middle-Earth(tm)\\game.dat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29.1.2008 18:29 33808]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2.2.2010 20:11 691696]
R2 AsSysCtrlService;ASUS System Control Service;c:\program files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [5.2.2010 13:37 90112]
R2 DvmMDES;DeviceVM Meta Data Export Service;c:\asus.sys\config\DVMExportService.exe [17.7.2009 15:25 319488]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2.2.2010 17:34 90112]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [18.12.2009 0:12 1044808]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [13.3.2008 19:02 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [25.3.2008 20:07 24592]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [1.2.2010 17:32 1381632]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-02-27 c:\windows\Tasks\Automatic troubleshooting.job
- c:\program files\TuneUp Utilities 2010\TuneUpSystemStatusCheck.exe [2009-12-17 23:18]
2010-02-26 c:\windows\Tasks\Automatická údržba.job
- c:\program files\TuneUp Utilities 2010\OneClickStarter.exe [2009-12-17 23:18]
2010-02-22 c:\windows\Tasks\SmartDefrag.job
- c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe [2010-02-02 14:30]
.
.
------- Doplňkový sken -------
.
uDefault_Search_URL = hxxp://www.google.com
uSearchAssistant = hxxp://www.google.com/ie
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedie (cs)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/index.php?tool ... m-1.0.0&q=
FF - prefs.js: network.proxy.type - 2
FF - component: c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\program files\Mozilla Firefox\components\qippipe.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\firefox\ext\components\nprpffbrowserrecordext.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-27 21:54
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe 1????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-507921405-1604221776-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\HID\Vid_046d&Pid_c529&MI_01&Col01\8&149ea30e&0&0000\LogConf]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(1308)
c:\windows\system32\klogon.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
c:\program files\AlienGUIse\fastload.dll
- - - - - - - > 'explorer.exe'(3812)
c:\windows\system32\SHDOCVW.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\msi.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\windows\ATKKBService.exe
c:\program files\Common Files\Portrait Displays\Shared\DTSRVC.exe
c:\windows\system32\inetsrv\inetinfo.exe
c:\program files\Nero\Nero 7\InCD\InCDsrv.exe
c:\program files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\wdfmgr.exe
.
**************************************************************************
.
Celkový čas: 2010-02-27 21:56:56 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-02-27 20:56
Před spuštěním: Volných bajtů: 132 920 762 368
Po spuštění: Volných bajtů: 133 125 947 392
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
- - End Of File - - E3E16F851E873FC781336D972BD73666
Jo a btw, omlouvám se Alence za tu "slečnu"
Nevšiml jsem si pohlaví pod nickem.
ComboFix 10-02-27.04 - User 27.02.2010 21:41:14.1.4 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3063.2583 [GMT 1:00]
Spuštěný z: e:\dokumenty\Downloads\ComboFix.exe
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\regedit.com
c:\windows\system32\Cache
c:\windows\system32\sqlite3.dll
c:\windows\system32\taskmgr.com
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
.
2010-02-27 17:29 . 2010-02-27 17:29 -------- d-----w- c:\program files\TrendMicro
2010-02-27 10:01 . 2010-02-27 10:02 5959299 ----a-w- c:\windows\REGBK01.ZIP
2010-02-26 21:02 . 2010-02-26 21:02 -------- d-----w- c:\program files\RivaTuner v2.24
2010-02-19 15:24 . 2009-09-04 15:25 253952 ----a-w- c:\windows\ATKKBService.exe
2010-02-19 15:16 . 2010-02-19 15:16 -------- d-----w- c:\program files\DNA
2010-02-18 22:17 . 2010-02-18 22:17 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-18 18:27 . 2006-06-14 12:44 12288 ----a-r- c:\windows\system32\drivers\EIO_XP.sys
2010-02-18 18:18 . 2010-02-24 21:34 -------- d-----w- c:\program files\RivaTuner
2010-02-18 18:05 . 2010-02-19 15:29 -------- d-----w- c:\program files\Software Informer
2010-02-18 17:51 . 2010-02-18 17:51 -------- d--h--w- c:\temp\dvmexp
2010-02-18 17:51 . 2010-02-18 18:01 -------- d--h--w- c:\temp\tmpdvmexp
2010-02-18 17:51 . 2010-02-18 18:01 -------- d-----w- C:\temp
2010-02-18 17:51 . 2010-02-18 18:01 -------- d-----w- C:\dvmexp
2010-02-18 17:50 . 2010-02-18 17:50 -------- d-----w- C:\ASUS.000
2010-02-18 17:50 . 2010-02-19 13:14 -------- d-----w- C:\ASUS.SYS
2010-02-18 17:44 . 2010-02-18 17:44 -------- d-----w- c:\program files\Downloaded Installations
2010-02-17 22:56 . 2010-02-17 22:56 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-02-17 22:56 . 2010-02-17 22:56 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-02-17 22:56 . 2010-02-17 22:56 669184 ----a-w- c:\windows\system32\pbsvc.exe
2010-02-17 22:56 . 2010-02-17 22:56 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-02-16 18:09 . 2010-02-16 18:09 -------- d-----w- c:\documents and settings\LocalService\Plocha
2010-02-16 18:00 . 2010-02-16 18:04 -------- d-----w- c:\program files\Xfire
2010-02-10 14:17 . 2010-02-10 14:49 -------- d-----w- c:\program files\Mass Effect
2010-02-05 20:00 . 2009-12-17 23:14 30536 ----a-w- c:\windows\system32\TURegOpt.exe
2010-02-05 20:00 . 2009-12-17 23:08 30024 ----a-w- c:\windows\system32\uxtuneup.dll
2010-02-05 18:40 . 2008-04-14 12:00 80896 -c--a-w- c:\windows\system32\dllcache\charmap.exe
2010-02-05 18:39 . 2008-04-14 12:00 7680 -c--a-w- c:\windows\system32\dllcache\pwsdata.dll
2010-02-05 18:38 . 2010-02-17 22:56 -------- d-----w- c:\windows\system32\Logfiles
2010-02-05 18:38 . 2010-02-05 18:43 -------- d-----w- C:\Inetpub
2010-02-05 16:16 . 2010-02-05 16:16 -------- d-----w- c:\program files\Yamicsoft
2010-02-05 12:37 . 2006-01-10 08:50 24576 ----a-r- c:\windows\system32\AsIO.dll
2010-02-05 12:37 . 2007-12-17 09:14 12400 ----a-r- c:\windows\system32\drivers\AsIO.sys
2010-02-05 12:37 . 2008-01-04 12:34 11832 ----a-w- c:\windows\system32\drivers\AsInsHelp64.sys
2010-02-05 12:37 . 2008-01-04 12:34 10216 ----a-w- c:\windows\system32\drivers\AsInsHelp32.sys
2010-02-05 12:37 . 2010-02-19 15:31 -------- d-----w- c:\program files\ASUS
2010-02-05 12:33 . 2010-02-05 12:33 -------- d-----r- c:\windows\AsDmiHtm
2010-02-04 20:48 . 2008-04-14 07:52 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2010-02-04 20:48 . 2008-04-14 07:52 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll
2010-02-04 20:48 . 2001-10-24 11:25 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2010-02-04 20:46 . 2001-08-17 19:13 16925 -c--a-w- c:\windows\system32\dllcache\w940nd.sys
2010-02-04 20:45 . 2001-10-24 11:25 26624 -c--a-w- c:\windows\system32\dllcache\umaxu22.dll
2010-02-04 20:44 . 2001-08-17 19:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2010-02-04 20:43 . 2001-10-24 10:43 285792 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2010-02-04 20:42 . 2001-10-24 11:25 33792 -c--a-w- c:\windows\system32\dllcache\smb0w.dll
2010-02-04 20:41 . 2001-10-24 11:02 6784 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2010-02-04 20:40 . 2001-08-17 19:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2010-02-04 20:39 . 2008-04-13 23:11 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2010-02-04 20:38 . 2001-08-17 21:05 31872 -c--a-w- c:\windows\system32\dllcache\ovce.sys
2010-02-04 20:37 . 2001-08-17 19:20 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys
2010-02-04 20:36 . 2001-10-24 11:01 75520 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2010-02-04 20:35 . 2001-08-17 20:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2010-02-04 20:34 . 2008-04-14 07:51 254464 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2010-02-04 20:33 . 2008-04-14 12:00 81920 -c--a-w- c:\windows\system32\dllcache\ieencode.dll
2010-02-04 20:32 . 2008-04-13 22:53 1041536 -c--a-w- c:\windows\system32\dllcache\hsfdpsp2.sys
2010-02-04 20:31 . 2001-10-24 10:58 907456 -c--a-w- c:\windows\system32\dllcache\hcf_msft.sys
2010-02-04 20:30 . 2001-08-17 20:52 7040 -c--a-w- c:\windows\system32\dllcache\exabyte2.sys
2010-02-04 20:29 . 2001-08-17 21:07 20192 -c--a-w- c:\windows\system32\dllcache\dpti2o.sys
2010-02-04 20:28 . 2001-10-24 11:24 216576 -c--a-w- c:\windows\system32\dllcache\cpscan.dll
2010-02-04 20:27 . 2008-04-13 23:16 17024 -c--a-w- c:\windows\system32\dllcache\bthenum.sys
2010-02-04 20:26 . 2001-10-24 11:24 61440 -c--a-w- c:\windows\system32\dllcache\acerscad.dll
2010-02-04 17:29 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-04 17:29 . 2010-02-04 17:30 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-02-04 17:29 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-02-04 11:15 . 2010-02-04 17:18 -------- d-----w- c:\windows\SxsCaPendDel
2010-02-04 09:55 . 2010-02-04 09:56 5593752 ----a-w- c:\windows\REGBK00.ZIP
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\VDLL.DLL
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\system32\runouce.exe
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\rundll16.exe
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\RUNDL132.EXE
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\logo1_.exe
2010-02-04 09:54 . 2010-02-04 09:54 -------- d---a-w- c:\windows\logo_1.exe
2010-02-04 09:49 . 2010-02-04 09:49 626688 ----a-w- c:\windows\system32\msvcr80.dll
2010-02-04 09:49 . 2010-02-04 09:49 548864 ----a-w- c:\windows\system32\msvcp80.dll
2010-02-04 09:49 . 2010-02-04 09:49 28672 ----a-w- c:\windows\system32\eEmpty.exe
2010-02-04 09:49 . 2008-04-14 12:00 225792 ----a-w- c:\windows\R.COM
2010-02-04 09:49 . 2008-04-14 12:00 183808 ----a-w- c:\windows\system32\T.COM
2010-02-04 09:41 . 2010-02-04 09:41 -------- d-----w- c:\documents and settings\User\DoctorWeb
2010-02-04 09:37 . 2010-02-05 12:26 -------- d-----w- c:\program files\Microsoft Bootvis
2010-02-03 18:05 . 2010-02-03 18:17 -------- d-----w- c:\program files\Mass Effect 2
2010-02-03 16:39 . 2010-02-10 14:38 -------- d-----w- c:\program files\Common Files\BioWare
2010-02-02 23:04 . 2010-02-02 23:04 278984 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-02-02 23:04 . 2010-02-02 23:04 25416 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-02-02 22:55 . 2010-02-19 14:52 -------- d-----w- c:\program files\Zaklínač
2010-02-02 22:08 . 2010-02-02 22:08 -------- d-----w- c:\program files\Electronic Arts
2010-02-02 21:26 . 2010-02-02 21:26 -------- d-----w- c:\program files\2K Games
2010-02-02 21:25 . 2010-02-02 21:25 -------- d-----w- c:\program files\DIFX
2010-02-02 21:25 . 2010-02-02 21:25 -------- d-----w- c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
2010-02-02 19:25 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-02-02 19:25 . 2010-02-02 19:25 -------- d-----w- c:\program files\CPUID
2010-02-02 19:23 . 2010-02-04 22:26 71326 ----a-w- c:\windows\BricoPackUninst.cmd
2010-02-02 19:21 . 2010-02-04 22:26 5415 ----a-w- c:\windows\BricoPackFoldersDelete.cmd
2010-02-02 19:21 . 2010-02-04 22:24 -------- d-----w- c:\windows\BricoPacks
2010-02-02 19:16 . 2003-02-26 21:27 36864 ----a-w- c:\windows\system32\wbsys.dll
2010-02-02 19:16 . 2010-02-03 12:03 -------- d-----w- c:\program files\AlienGUIse
2010-02-02 19:16 . 2010-02-02 19:16 -------- d-----w- c:\program files\Common Files\Stardock
2010-02-02 19:11 . 2010-02-02 19:11 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-02 19:11 . 2010-02-02 19:11 -------- d-----w- c:\program files\Dolphin Pod
2010-02-02 19:11 . 2010-02-02 19:51 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-02-02 18:52 . 2010-02-02 18:52 -------- d-----w- c:\program files\Recuva
2010-02-02 18:51 . 2010-02-02 18:51 -------- d-----w- c:\program files\Defraggler
2010-02-02 18:48 . 2010-02-18 18:10 -------- d-----w- c:\program files\Speccy
2010-02-02 17:13 . 2010-02-02 17:13 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----w- c:\program files\Common Files\Skype
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----r- c:\program files\Skype
2010-02-02 17:07 . 2010-02-02 17:07 -------- d-----w- c:\program files\QIP Infium
2010-02-02 16:56 . 2010-02-02 17:33 -------- d-----w- c:\program files\IObit
2010-02-02 16:51 . 2010-02-27 19:25 -------- d-----w- c:\program files\Steam
2010-02-02 16:44 . 2010-02-02 16:44 -------- d-----w- c:\program files\Last.fm
2010-02-02 16:42 . 2010-02-26 21:04 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-02-02 16:40 . 2010-02-02 16:40 -------- d-----w- c:\program files\Winamp Detect
2010-02-02 16:39 . 2010-02-02 16:41 -------- d-----w- c:\program files\Winamp
2010-02-02 16:35 . 2004-11-22 11:07 2304 ----a-w- c:\windows\system32\Machnm32.sys
2010-02-02 16:35 . 2007-02-09 11:17 17465 ----a-w- c:\windows\system32\drivers\pivot.sys
2010-02-02 16:35 . 2007-02-09 11:17 62009 ----a-w- c:\windows\system32\WPFB.DLL
2010-02-02 16:35 . 2007-02-09 11:17 11323 ----a-w- c:\windows\system32\drivers\pivotmou.sys
2010-02-02 16:35 . 2010-02-02 16:35 -------- d-----w- c:\program files\Portrait Displays
2010-02-02 16:24 . 2010-02-02 16:24 -------- d-----w- c:\program files\PeaZip
2010-02-02 16:20 . 2010-02-02 16:20 -------- d-----w- c:\program files\Common Files\xing shared
2010-02-02 16:18 . 2010-02-02 16:18 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-02-02 16:18 . 2010-02-02 16:18 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-02-02 16:18 . 2010-02-02 16:18 -------- d-----w- c:\program files\Real
2010-02-02 16:18 . 2010-02-02 16:23 -------- d-----w- c:\program files\Common Files\Real
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\VideoLAN
2010-02-02 16:12 . 2010-02-02 16:14 -------- d-----w- c:\program files\DivX
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\Common Files\DivX Shared
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-27 20:40 . 2008-04-14 12:00 97980 ----a-w- c:\windows\system32\perfc005.dat
2010-02-27 20:40 . 2008-04-14 12:00 481042 ----a-w- c:\windows\system32\perfh005.dat
2010-02-27 20:34 . 2010-02-02 15:01 5152 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2010-02-27 20:34 . 2010-02-02 15:01 47432 --sha-w- c:\windows\system32\drivers\fidbox.idx
2010-02-19 15:31 . 2010-02-01 16:32 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-04 22:26 . 2008-04-14 12:00 219648 ----a-w- c:\windows\system32\uxtheme.dll
2010-02-03 16:13 . 2010-02-01 16:40 -------- d-----w- c:\program files\EXPERTool
2010-02-02 21:25 . 2010-02-01 16:47 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Common Files\Portrait Displays
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Acer Display
2010-02-02 15:57 . 2010-02-02 15:57 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2010-02-02 15:15 . 2008-01-29 17:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2010-02-02 12:47 . 2010-02-01 16:45 -------- d-----w- c:\program files\NVIDIA Corporation
2010-02-02 12:47 . 2010-02-01 16:47 -------- d-----w- c:\program files\AGEIA Technologies
2010-02-02 08:28 . 2010-02-01 16:31 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-01 16:34 . 2010-02-01 16:34 -------- d-----w- c:\program files\Realtek
2010-02-01 16:32 . 2010-02-01 16:31 -------- d-----w- c:\program files\VIA
2010-02-01 16:25 . 2010-02-01 16:25 -------- d-----w- c:\program files\Intel
2010-02-01 16:16 . 2010-02-01 16:16 -------- d-----w- c:\program files\microsoft frontpage
2010-02-01 16:16 . 2010-02-01 16:16 8738 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-02-01 16:16 . 2010-02-01 16:16 2112 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-02-01 16:16 . 2010-02-01 16:16 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-02-01 16:13 . 2010-02-01 16:13 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-22 01:37 . 2010-01-22 01:37 41872 ----a-w- c:\windows\system32\xfcodec.dll
2010-01-12 11:03 . 2009-10-05 10:10 6359168 ----a-w- c:\windows\system32\nv4_disp.dll
2010-01-12 11:03 . 2009-10-05 10:10 10276768 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-01-11 21:17 . 2010-01-11 21:17 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-01-11 21:17 . 2010-01-11 21:17 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-01-11 21:17 . 2010-01-11 21:17 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-01-11 21:17 . 2010-01-11 21:17 13666408 ----a-w- c:\windows\system32\nvcpl.dll
2010-01-11 21:17 . 2010-01-11 21:17 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-01-11 21:17 . 2010-01-11 21:17 81920 ----a-w- c:\windows\system32\nvwddi.dll
2009-12-31 16:50 . 2008-04-14 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2010-02-04 22:24 916480 ----a-w- c:\windows\system32\SETD.tmp
2009-12-21 19:08 . 2010-02-04 22:24 1208832 ----a-w- c:\windows\system32\SETE.tmp
2009-12-21 19:08 . 2008-04-14 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2009-12-21 19:08 . 2010-02-04 22:24 5942784 ----a-w- c:\windows\system32\SET10.tmp
2009-12-17 07:42 . 2010-02-05 18:40 343552 ----a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:10 . 2008-04-14 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
2009-12-09 10:11 . 2008-04-14 12:00 2147328 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-12-09 10:11 . 2008-04-14 08:06 2025984 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-12-04 18:22 . 2008-04-14 12:00 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-10-05 17:34 . 2010-02-02 17:08 118000 ----a-w- c:\program files\mozilla firefox\components\qippipe.dll
.
------- Sigcheck -------
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe" [2009-07-15 33636352]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2010-02-02 201992]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-01-11 13666408]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-2-2 805392]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2008-05-02 01:42 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 22:34 24576 ----a-w- c:\program files\AlienGUIse\fastload.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Documents and Settings\\All Users\\Data aplikací\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 2009\\Czech\\setup.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Mass Effect 2\\Binaries\\MassEffect2.exe"=
"c:\\Program Files\\Mass Effect 2\\MassEffect2Launcher.exe"=
"c:\\Program Files\\Mass Effect\\Binaries\\MassEffect.exe"=
"c:\\Program Files\\Mass Effect\\MassEffectLauncher.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_Launcher.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_DX11.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx9.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx10.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Launcher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead 2\\left4dead2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead\\left4dead.exe"=
"e:\\Program Files\\LOTR The Battle for Middle-Earth(tm)\\game.dat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29.1.2008 18:29 33808]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2.2.2010 20:11 691696]
R2 AsSysCtrlService;ASUS System Control Service;c:\program files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [5.2.2010 13:37 90112]
R2 DvmMDES;DeviceVM Meta Data Export Service;c:\asus.sys\config\DVMExportService.exe [17.7.2009 15:25 319488]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2.2.2010 17:34 90112]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [18.12.2009 0:12 1044808]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [13.3.2008 19:02 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [25.3.2008 20:07 24592]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [1.2.2010 17:32 1381632]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-02-27 c:\windows\Tasks\Automatic troubleshooting.job
- c:\program files\TuneUp Utilities 2010\TuneUpSystemStatusCheck.exe [2009-12-17 23:18]
2010-02-26 c:\windows\Tasks\Automatická údržba.job
- c:\program files\TuneUp Utilities 2010\OneClickStarter.exe [2009-12-17 23:18]
2010-02-22 c:\windows\Tasks\SmartDefrag.job
- c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe [2010-02-02 14:30]
.
.
------- Doplňkový sken -------
.
uDefault_Search_URL = hxxp://www.google.com
uSearchAssistant = hxxp://www.google.com/ie
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedie (cs)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/index.php?tool ... m-1.0.0&q=
FF - prefs.js: network.proxy.type - 2
FF - component: c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\program files\Mozilla Firefox\components\qippipe.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\firefox\ext\components\nprpffbrowserrecordext.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-27 21:54
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe 1????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-507921405-1604221776-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\HID\Vid_046d&Pid_c529&MI_01&Col01\8&149ea30e&0&0000\LogConf]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(1308)
c:\windows\system32\klogon.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
c:\program files\AlienGUIse\fastload.dll
- - - - - - - > 'explorer.exe'(3812)
c:\windows\system32\SHDOCVW.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\msi.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\windows\ATKKBService.exe
c:\program files\Common Files\Portrait Displays\Shared\DTSRVC.exe
c:\windows\system32\inetsrv\inetinfo.exe
c:\program files\Nero\Nero 7\InCD\InCDsrv.exe
c:\program files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\wdfmgr.exe
.
**************************************************************************
.
Celkový čas: 2010-02-27 21:56:56 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-02-27 20:56
Před spuštěním: Volných bajtů: 132 920 762 368
Po spuštění: Volných bajtů: 133 125 947 392
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
- - End Of File - - E3E16F851E873FC781336D972BD73666
Jo a btw, omlouvám se Alence za tu "slečnu"

- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zamrznutí PC.
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:
File::
c:\windows\REGBK00.ZIP
c:\windows\system32\eEmpty.exe
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
c:\windows\system32\ezsidmv.dat
c:\windows\system32\SETD.tmp
c:\windows\system32\SETE.tmp
c:\windows\system32\SET10.tmp
c:\windows\system32\SET*.tmp
Folder::
c:\windows\SxsCaPendDel
c:\windows\VDLL.DLL
c:\windows\system32\runouce.exe
c:\windows\rundll16.exe
c:\windows\RUNDL132.EXE
c:\windows\logo1_.exe
c:\windows\logo_1.exe
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
DirLook::
c:\documents and settings\LocalService\Plocha
RegLockDel::
[-HKEY_USERS\S-1-5-21-507921405-1604221776-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Zkopíruj do něj následující celý text označený zeleně:
File::
c:\windows\REGBK00.ZIP
c:\windows\system32\eEmpty.exe
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
c:\windows\system32\ezsidmv.dat
c:\windows\system32\SETD.tmp
c:\windows\system32\SETE.tmp
c:\windows\system32\SET10.tmp
c:\windows\system32\SET*.tmp
Folder::
c:\windows\SxsCaPendDel
c:\windows\VDLL.DLL
c:\windows\system32\runouce.exe
c:\windows\rundll16.exe
c:\windows\RUNDL132.EXE
c:\windows\logo1_.exe
c:\windows\logo_1.exe
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
DirLook::
c:\documents and settings\LocalService\Plocha
RegLockDel::
[-HKEY_USERS\S-1-5-21-507921405-1604221776-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT a popiš chování počítače
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Zamrznutí PC.
ComboFix 10-02-27.04 - User 27.02.2010 22:33:45.2.4 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3063.2584 [GMT 1:00]
Spuštěný z: c:\documents and settings\User\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\User\Plocha\CFScript.txt
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FILE ::
"c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP"
"c:\windows\REGBK00.ZIP"
"c:\windows\system32\eEmpty.exe"
"c:\windows\system32\ezsidmv.dat"
"c:\windows\system32\SET10.tmp"
"c:\windows\system32\SETD.tmp"
"c:\windows\system32\SETE.tmp"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP\WiseCustomCalla.dll
c:\windows\logo_1.exe
c:\windows\logo1_.exe
c:\windows\REGBK00.ZIP
c:\windows\RUNDL132.EXE
c:\windows\rundll16.exe
c:\windows\SxsCaPendDel
c:\windows\system32\eEmpty.exe
c:\windows\system32\ezsidmv.dat
c:\windows\system32\runouce.exe
c:\windows\system32\SET10.tmp
c:\windows\system32\SETD.tmp
c:\windows\system32\SETE.tmp
c:\windows\VDLL.DLL
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
.
2010-02-27 21:31 . 2010-02-27 21:31 -------- d--h--w- c:\temp\dvmexp
2010-02-27 21:31 . 2010-02-27 21:31 -------- d-----w- c:\temp\tmpdvmexp
2010-02-27 21:31 . 2010-02-27 21:31 -------- d-----w- C:\temp
2010-02-27 21:31 . 2010-02-27 21:31 -------- d-----w- C:\dvmexp
2010-02-27 17:29 . 2010-02-27 17:29 -------- d-----w- c:\program files\TrendMicro
2010-02-27 10:01 . 2010-02-27 10:02 5959299 ----a-w- c:\windows\REGBK01.ZIP
2010-02-26 21:02 . 2010-02-26 21:02 -------- d-----w- c:\program files\RivaTuner v2.24
2010-02-19 15:24 . 2009-09-04 15:25 253952 ----a-w- c:\windows\ATKKBService.exe
2010-02-19 15:16 . 2010-02-19 15:16 -------- d-----w- c:\program files\DNA
2010-02-18 22:17 . 2010-02-18 22:17 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-18 18:27 . 2006-06-14 12:44 12288 ----a-r- c:\windows\system32\drivers\EIO_XP.sys
2010-02-18 18:18 . 2010-02-24 21:34 -------- d-----w- c:\program files\RivaTuner
2010-02-18 18:05 . 2010-02-19 15:29 -------- d-----w- c:\program files\Software Informer
2010-02-18 17:50 . 2010-02-27 21:20 -------- d-----w- C:\ASUS.SYS
2010-02-18 17:44 . 2010-02-18 17:44 -------- d-----w- c:\program files\Downloaded Installations
2010-02-17 22:56 . 2010-02-17 22:56 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-02-17 22:56 . 2010-02-17 22:56 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-02-17 22:56 . 2010-02-17 22:56 669184 ----a-w- c:\windows\system32\pbsvc.exe
2010-02-17 22:56 . 2010-02-17 22:56 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-02-16 18:09 . 2010-02-16 18:09 -------- d-----w- c:\documents and settings\LocalService\Plocha
2010-02-16 18:00 . 2010-02-16 18:04 -------- d-----w- c:\program files\Xfire
2010-02-10 14:17 . 2010-02-10 14:49 -------- d-----w- c:\program files\Mass Effect
2010-02-05 20:00 . 2009-12-17 23:14 30536 ----a-w- c:\windows\system32\TURegOpt.exe
2010-02-05 20:00 . 2009-12-17 23:08 30024 ----a-w- c:\windows\system32\uxtuneup.dll
2010-02-05 18:40 . 2008-04-14 12:00 80896 -c--a-w- c:\windows\system32\dllcache\charmap.exe
2010-02-05 18:39 . 2008-04-14 12:00 7680 -c--a-w- c:\windows\system32\dllcache\pwsdata.dll
2010-02-05 18:38 . 2010-02-17 22:56 -------- d-----w- c:\windows\system32\Logfiles
2010-02-05 18:38 . 2010-02-05 18:43 -------- d-----w- C:\Inetpub
2010-02-05 16:16 . 2010-02-05 16:16 -------- d-----w- c:\program files\Yamicsoft
2010-02-05 12:37 . 2006-01-10 08:50 24576 ----a-r- c:\windows\system32\AsIO.dll
2010-02-05 12:37 . 2007-12-17 09:14 12400 ----a-r- c:\windows\system32\drivers\AsIO.sys
2010-02-05 12:37 . 2008-01-04 12:34 11832 ----a-w- c:\windows\system32\drivers\AsInsHelp64.sys
2010-02-05 12:37 . 2008-01-04 12:34 10216 ----a-w- c:\windows\system32\drivers\AsInsHelp32.sys
2010-02-05 12:37 . 2010-02-19 15:31 -------- d-----w- c:\program files\ASUS
2010-02-05 12:33 . 2010-02-05 12:33 -------- d-----r- c:\windows\AsDmiHtm
2010-02-04 20:48 . 2008-04-14 07:52 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2010-02-04 20:48 . 2008-04-14 07:52 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll
2010-02-04 20:48 . 2001-10-24 11:25 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2010-02-04 20:46 . 2001-08-17 19:13 16925 -c--a-w- c:\windows\system32\dllcache\w940nd.sys
2010-02-04 20:45 . 2001-10-24 11:25 26624 -c--a-w- c:\windows\system32\dllcache\umaxu22.dll
2010-02-04 20:44 . 2001-08-17 19:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2010-02-04 20:43 . 2001-10-24 10:43 285792 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2010-02-04 20:42 . 2001-10-24 11:25 33792 -c--a-w- c:\windows\system32\dllcache\smb0w.dll
2010-02-04 20:41 . 2001-10-24 11:02 6784 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2010-02-04 20:40 . 2001-08-17 19:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2010-02-04 20:39 . 2008-04-13 23:11 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2010-02-04 20:38 . 2001-08-17 21:05 31872 -c--a-w- c:\windows\system32\dllcache\ovce.sys
2010-02-04 20:37 . 2001-08-17 19:20 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys
2010-02-04 20:36 . 2001-10-24 11:01 75520 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2010-02-04 20:35 . 2001-08-17 20:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2010-02-04 20:34 . 2008-04-14 07:51 254464 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2010-02-04 20:33 . 2008-04-14 12:00 81920 -c--a-w- c:\windows\system32\dllcache\ieencode.dll
2010-02-04 20:32 . 2008-04-13 22:53 1041536 -c--a-w- c:\windows\system32\dllcache\hsfdpsp2.sys
2010-02-04 20:31 . 2001-10-24 10:58 907456 -c--a-w- c:\windows\system32\dllcache\hcf_msft.sys
2010-02-04 20:30 . 2001-08-17 20:52 7040 -c--a-w- c:\windows\system32\dllcache\exabyte2.sys
2010-02-04 20:29 . 2001-08-17 21:07 20192 -c--a-w- c:\windows\system32\dllcache\dpti2o.sys
2010-02-04 20:28 . 2001-10-24 11:24 216576 -c--a-w- c:\windows\system32\dllcache\cpscan.dll
2010-02-04 20:27 . 2008-04-13 23:16 17024 -c--a-w- c:\windows\system32\dllcache\bthenum.sys
2010-02-04 20:26 . 2001-10-24 11:24 61440 -c--a-w- c:\windows\system32\dllcache\acerscad.dll
2010-02-04 17:29 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-04 17:29 . 2010-02-04 17:30 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-02-04 17:29 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-02-04 09:49 . 2010-02-04 09:49 626688 ----a-w- c:\windows\system32\msvcr80.dll
2010-02-04 09:49 . 2010-02-04 09:49 548864 ----a-w- c:\windows\system32\msvcp80.dll
2010-02-04 09:49 . 2008-04-14 12:00 225792 ----a-w- c:\windows\R.COM
2010-02-04 09:49 . 2008-04-14 12:00 183808 ----a-w- c:\windows\system32\T.COM
2010-02-04 09:41 . 2010-02-04 09:41 -------- d-----w- c:\documents and settings\User\DoctorWeb
2010-02-04 09:37 . 2010-02-05 12:26 -------- d-----w- c:\program files\Microsoft Bootvis
2010-02-03 18:05 . 2010-02-03 18:17 -------- d-----w- c:\program files\Mass Effect 2
2010-02-03 16:39 . 2010-02-10 14:38 -------- d-----w- c:\program files\Common Files\BioWare
2010-02-02 23:04 . 2010-02-02 23:04 278984 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-02-02 23:04 . 2010-02-02 23:04 25416 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-02-02 22:55 . 2010-02-19 14:52 -------- d-----w- c:\program files\Zaklínač
2010-02-02 22:08 . 2010-02-02 22:08 -------- d-----w- c:\program files\Electronic Arts
2010-02-02 21:26 . 2010-02-02 21:26 -------- d-----w- c:\program files\2K Games
2010-02-02 21:25 . 2010-02-02 21:25 -------- d-----w- c:\program files\DIFX
2010-02-02 19:25 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-02-02 19:25 . 2010-02-02 19:25 -------- d-----w- c:\program files\CPUID
2010-02-02 19:23 . 2010-02-04 22:26 71326 ----a-w- c:\windows\BricoPackUninst.cmd
2010-02-02 19:21 . 2010-02-04 22:26 5415 ----a-w- c:\windows\BricoPackFoldersDelete.cmd
2010-02-02 19:21 . 2010-02-04 22:24 -------- d-----w- c:\windows\BricoPacks
2010-02-02 19:16 . 2003-02-26 21:27 36864 ----a-w- c:\windows\system32\wbsys.dll
2010-02-02 19:16 . 2010-02-03 12:03 -------- d-----w- c:\program files\AlienGUIse
2010-02-02 19:16 . 2010-02-02 19:16 -------- d-----w- c:\program files\Common Files\Stardock
2010-02-02 19:11 . 2010-02-02 19:11 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-02 19:11 . 2010-02-02 19:11 -------- d-----w- c:\program files\Dolphin Pod
2010-02-02 19:11 . 2010-02-02 19:51 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-02-02 18:52 . 2010-02-02 18:52 -------- d-----w- c:\program files\Recuva
2010-02-02 18:51 . 2010-02-02 18:51 -------- d-----w- c:\program files\Defraggler
2010-02-02 18:48 . 2010-02-18 18:10 -------- d-----w- c:\program files\Speccy
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----w- c:\program files\Common Files\Skype
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----r- c:\program files\Skype
2010-02-02 17:07 . 2010-02-02 17:07 -------- d-----w- c:\program files\QIP Infium
2010-02-02 16:56 . 2010-02-02 17:33 -------- d-----w- c:\program files\IObit
2010-02-02 16:51 . 2010-02-27 19:25 -------- d-----w- c:\program files\Steam
2010-02-02 16:44 . 2010-02-02 16:44 -------- d-----w- c:\program files\Last.fm
2010-02-02 16:42 . 2010-02-26 21:04 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-02-02 16:40 . 2010-02-02 16:40 -------- d-----w- c:\program files\Winamp Detect
2010-02-02 16:39 . 2010-02-02 16:41 -------- d-----w- c:\program files\Winamp
2010-02-02 16:35 . 2004-11-22 11:07 2304 ----a-w- c:\windows\system32\Machnm32.sys
2010-02-02 16:35 . 2007-02-09 11:17 17465 ----a-w- c:\windows\system32\drivers\pivot.sys
2010-02-02 16:35 . 2007-02-09 11:17 62009 ----a-w- c:\windows\system32\WPFB.DLL
2010-02-02 16:35 . 2007-02-09 11:17 11323 ----a-w- c:\windows\system32\drivers\pivotmou.sys
2010-02-02 16:35 . 2010-02-02 16:35 -------- d-----w- c:\program files\Portrait Displays
2010-02-02 16:24 . 2010-02-02 16:24 -------- d-----w- c:\program files\PeaZip
2010-02-02 16:20 . 2010-02-02 16:20 -------- d-----w- c:\program files\Common Files\xing shared
2010-02-02 16:18 . 2010-02-02 16:18 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-02-02 16:18 . 2010-02-02 16:18 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-02-02 16:18 . 2010-02-02 16:18 -------- d-----w- c:\program files\Real
2010-02-02 16:18 . 2010-02-02 16:23 -------- d-----w- c:\program files\Common Files\Real
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\VideoLAN
2010-02-02 16:12 . 2010-02-02 16:14 -------- d-----w- c:\program files\DivX
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-02-02 15:56 . 2008-05-02 01:38 301656 ----a-w- c:\windows\system32\BtCoreIf.dll
2010-02-02 15:56 . 2008-05-02 01:40 84496 ----a-w- c:\windows\system32\KemXML.dll
2010-02-02 15:56 . 2008-05-02 01:40 117264 ----a-w- c:\windows\system32\KemWnd.dll
2010-02-02 15:56 . 2008-05-02 01:39 145936 ----a-w- c:\windows\system32\KemUtil.dll
2010-02-02 15:56 . 2008-05-02 01:39 170512 ----a-w- c:\windows\system32\kemutb.dll
2010-02-02 15:55 . 2010-02-02 15:56 -------- d-----w- c:\program files\Common Files\Logishrd
2010-02-02 15:55 . 2010-02-02 15:55 -------- d-----w- c:\program files\Logitech
2010-02-02 15:01 . 2010-02-02 15:15 95259 ----a-w- c:\windows\system32\drivers\klick.dat
2010-02-02 15:01 . 2010-02-02 15:15 108059 ----a-w- c:\windows\system32\drivers\klin.dat
2010-02-02 15:01 . 2010-02-27 21:29 884768 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2010-02-02 15:01 . 2010-02-27 21:29 5798944 --sha-w- c:\windows\system32\drivers\fidbox.dat
2010-02-02 15:01 . 2010-02-02 15:01 -------- d-----w- c:\program files\Kaspersky Lab
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-27 21:35 . 2008-04-14 12:00 97980 ----a-w- c:\windows\system32\perfc005.dat
2010-02-27 21:35 . 2008-04-14 12:00 481042 ----a-w- c:\windows\system32\perfh005.dat
2010-02-27 21:29 . 2010-02-02 15:01 5152 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2010-02-27 21:29 . 2010-02-02 15:01 47432 --sha-w- c:\windows\system32\drivers\fidbox.idx
2010-02-19 15:31 . 2010-02-01 16:32 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-04 22:26 . 2008-04-14 12:00 219648 ----a-w- c:\windows\system32\uxtheme.dll
2010-02-03 16:13 . 2010-02-01 16:40 -------- d-----w- c:\program files\EXPERTool
2010-02-02 21:25 . 2010-02-01 16:47 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Common Files\Portrait Displays
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Acer Display
2010-02-02 15:57 . 2010-02-02 15:57 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2010-02-02 15:15 . 2008-01-29 17:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2010-02-02 12:47 . 2010-02-01 16:45 -------- d-----w- c:\program files\NVIDIA Corporation
2010-02-02 12:47 . 2010-02-01 16:47 -------- d-----w- c:\program files\AGEIA Technologies
2010-02-02 08:28 . 2010-02-01 16:31 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-01 16:34 . 2010-02-01 16:34 -------- d-----w- c:\program files\Realtek
2010-02-01 16:32 . 2010-02-01 16:31 -------- d-----w- c:\program files\VIA
2010-02-01 16:25 . 2010-02-01 16:25 -------- d-----w- c:\program files\Intel
2010-02-01 16:16 . 2010-02-01 16:16 -------- d-----w- c:\program files\microsoft frontpage
2010-02-01 16:16 . 2010-02-01 16:16 8738 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-02-01 16:16 . 2010-02-01 16:16 2112 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-02-01 16:16 . 2010-02-01 16:16 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-02-01 16:13 . 2010-02-01 16:13 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-22 01:37 . 2010-01-22 01:37 41872 ----a-w- c:\windows\system32\xfcodec.dll
2010-01-12 11:03 . 2009-10-05 10:10 6359168 ----a-w- c:\windows\system32\nv4_disp.dll
2010-01-12 11:03 . 2009-10-05 10:10 10276768 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-01-11 21:17 . 2010-01-11 21:17 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-01-11 21:17 . 2010-01-11 21:17 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-01-11 21:17 . 2010-01-11 21:17 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-01-11 21:17 . 2010-01-11 21:17 13666408 ----a-w- c:\windows\system32\nvcpl.dll
2010-01-11 21:17 . 2010-01-11 21:17 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-01-11 21:17 . 2010-01-11 21:17 81920 ----a-w- c:\windows\system32\nvwddi.dll
2009-12-31 16:50 . 2008-04-14 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2008-04-14 12:00 916480 ------w- c:\windows\system32\wininet.dll
2009-12-17 07:42 . 2010-02-05 18:40 343552 ----a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:10 . 2008-04-14 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
2009-12-09 10:11 . 2008-04-14 12:00 2147328 ------w- c:\windows\system32\ntoskrnl.exe
2009-12-09 10:11 . 2008-04-14 08:06 2025984 ------w- c:\windows\system32\ntkrnlpa.exe
2009-12-04 18:22 . 2008-04-14 12:00 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-10-05 17:34 . 2010-02-02 17:08 118000 ----a-w- c:\program files\mozilla firefox\components\qippipe.dll
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\documents and settings\LocalService\Plocha ----
------- Sigcheck -------
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe" [2009-07-15 33636352]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2010-02-02 201992]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-01-11 13666408]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-2-2 805392]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2008-05-02 01:42 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 22:34 24576 ----a-w- c:\program files\AlienGUIse\fastload.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Documents and Settings\\All Users\\Data aplikací\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 2009\\Czech\\setup.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Mass Effect 2\\Binaries\\MassEffect2.exe"=
"c:\\Program Files\\Mass Effect 2\\MassEffect2Launcher.exe"=
"c:\\Program Files\\Mass Effect\\Binaries\\MassEffect.exe"=
"c:\\Program Files\\Mass Effect\\MassEffectLauncher.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_Launcher.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_DX11.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx9.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx10.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Launcher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead 2\\left4dead2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead\\left4dead.exe"=
"e:\\Program Files\\LOTR The Battle for Middle-Earth(tm)\\game.dat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29.1.2008 18:29 33808]
R2 DvmMDES;DeviceVM Meta Data Export Service;c:\asus.sys\config\DVMExportService.exe [17.7.2009 15:25 319488]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2.2.2010 17:34 90112]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [18.12.2009 0:12 1044808]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [13.3.2008 19:02 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [25.3.2008 20:07 24592]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [1.2.2010 17:32 1381632]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2.2.2010 20:11 691696]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [5.2.2010 13:37 90112]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-02-27 c:\windows\Tasks\Automatic troubleshooting.job
- c:\program files\TuneUp Utilities 2010\TuneUpSystemStatusCheck.exe [2009-12-17 23:18]
2010-02-26 c:\windows\Tasks\Automatická údržba.job
- c:\program files\TuneUp Utilities 2010\OneClickStarter.exe [2009-12-17 23:18]
2010-02-27 c:\windows\Tasks\SmartDefrag.job
- c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe [2010-02-02 14:30]
.
.
------- Doplňkový sken -------
.
uDefault_Search_URL = hxxp://www.google.com
uSearchAssistant = hxxp://www.google.com/ie
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedie (cs)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/index.php?tool ... m-1.0.0&q=
FF - prefs.js: network.proxy.type - 2
FF - component: c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\program files\Mozilla Firefox\components\qippipe.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\firefox\ext\components\nprpffbrowserrecordext.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-27 22:37
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe 1????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-507921405-1604221776-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\HID\Vid_046d&Pid_c529&MI_01&Col01\8&149ea30e&0&0000\LogConf]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(260)
c:\windows\system32\klogon.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
c:\program files\AlienGUIse\fastload.dll
.
Celkový čas: 2010-02-27 22:38:56
ComboFix-quarantined-files.txt 2010-02-27 21:38
Před spuštěním: Volných bajtů: 133 751 341 056
Po spuštění: Volných bajtů: 133 706 248 192
- - End Of File - - FF43CAB258DC7A982EE3B80342CDDA32
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3063.2584 [GMT 1:00]
Spuštěný z: c:\documents and settings\User\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\User\Plocha\CFScript.txt
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FILE ::
"c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP"
"c:\windows\REGBK00.ZIP"
"c:\windows\system32\eEmpty.exe"
"c:\windows\system32\ezsidmv.dat"
"c:\windows\system32\SET10.tmp"
"c:\windows\system32\SETD.tmp"
"c:\windows\system32\SETE.tmp"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP\WiseCustomCalla.dll
c:\windows\logo_1.exe
c:\windows\logo1_.exe
c:\windows\REGBK00.ZIP
c:\windows\RUNDL132.EXE
c:\windows\rundll16.exe
c:\windows\SxsCaPendDel
c:\windows\system32\eEmpty.exe
c:\windows\system32\ezsidmv.dat
c:\windows\system32\runouce.exe
c:\windows\system32\SET10.tmp
c:\windows\system32\SETD.tmp
c:\windows\system32\SETE.tmp
c:\windows\VDLL.DLL
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
.
2010-02-27 21:31 . 2010-02-27 21:31 -------- d--h--w- c:\temp\dvmexp
2010-02-27 21:31 . 2010-02-27 21:31 -------- d-----w- c:\temp\tmpdvmexp
2010-02-27 21:31 . 2010-02-27 21:31 -------- d-----w- C:\temp
2010-02-27 21:31 . 2010-02-27 21:31 -------- d-----w- C:\dvmexp
2010-02-27 17:29 . 2010-02-27 17:29 -------- d-----w- c:\program files\TrendMicro
2010-02-27 10:01 . 2010-02-27 10:02 5959299 ----a-w- c:\windows\REGBK01.ZIP
2010-02-26 21:02 . 2010-02-26 21:02 -------- d-----w- c:\program files\RivaTuner v2.24
2010-02-19 15:24 . 2009-09-04 15:25 253952 ----a-w- c:\windows\ATKKBService.exe
2010-02-19 15:16 . 2010-02-19 15:16 -------- d-----w- c:\program files\DNA
2010-02-18 22:17 . 2010-02-18 22:17 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-02-18 18:27 . 2006-06-14 12:44 12288 ----a-r- c:\windows\system32\drivers\EIO_XP.sys
2010-02-18 18:18 . 2010-02-24 21:34 -------- d-----w- c:\program files\RivaTuner
2010-02-18 18:05 . 2010-02-19 15:29 -------- d-----w- c:\program files\Software Informer
2010-02-18 17:50 . 2010-02-27 21:20 -------- d-----w- C:\ASUS.SYS
2010-02-18 17:44 . 2010-02-18 17:44 -------- d-----w- c:\program files\Downloaded Installations
2010-02-17 22:56 . 2010-02-17 22:56 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-02-17 22:56 . 2010-02-17 22:56 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-02-17 22:56 . 2010-02-17 22:56 669184 ----a-w- c:\windows\system32\pbsvc.exe
2010-02-17 22:56 . 2010-02-17 22:56 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-02-16 18:09 . 2010-02-16 18:09 -------- d-----w- c:\documents and settings\LocalService\Plocha
2010-02-16 18:00 . 2010-02-16 18:04 -------- d-----w- c:\program files\Xfire
2010-02-10 14:17 . 2010-02-10 14:49 -------- d-----w- c:\program files\Mass Effect
2010-02-05 20:00 . 2009-12-17 23:14 30536 ----a-w- c:\windows\system32\TURegOpt.exe
2010-02-05 20:00 . 2009-12-17 23:08 30024 ----a-w- c:\windows\system32\uxtuneup.dll
2010-02-05 18:40 . 2008-04-14 12:00 80896 -c--a-w- c:\windows\system32\dllcache\charmap.exe
2010-02-05 18:39 . 2008-04-14 12:00 7680 -c--a-w- c:\windows\system32\dllcache\pwsdata.dll
2010-02-05 18:38 . 2010-02-17 22:56 -------- d-----w- c:\windows\system32\Logfiles
2010-02-05 18:38 . 2010-02-05 18:43 -------- d-----w- C:\Inetpub
2010-02-05 16:16 . 2010-02-05 16:16 -------- d-----w- c:\program files\Yamicsoft
2010-02-05 12:37 . 2006-01-10 08:50 24576 ----a-r- c:\windows\system32\AsIO.dll
2010-02-05 12:37 . 2007-12-17 09:14 12400 ----a-r- c:\windows\system32\drivers\AsIO.sys
2010-02-05 12:37 . 2008-01-04 12:34 11832 ----a-w- c:\windows\system32\drivers\AsInsHelp64.sys
2010-02-05 12:37 . 2008-01-04 12:34 10216 ----a-w- c:\windows\system32\drivers\AsInsHelp32.sys
2010-02-05 12:37 . 2010-02-19 15:31 -------- d-----w- c:\program files\ASUS
2010-02-05 12:33 . 2010-02-05 12:33 -------- d-----r- c:\windows\AsDmiHtm
2010-02-04 20:48 . 2008-04-14 07:52 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2010-02-04 20:48 . 2008-04-14 07:52 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll
2010-02-04 20:48 . 2001-10-24 11:25 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2010-02-04 20:46 . 2001-08-17 19:13 16925 -c--a-w- c:\windows\system32\dllcache\w940nd.sys
2010-02-04 20:45 . 2001-10-24 11:25 26624 -c--a-w- c:\windows\system32\dllcache\umaxu22.dll
2010-02-04 20:44 . 2001-08-17 19:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys
2010-02-04 20:43 . 2001-10-24 10:43 285792 -c--a-w- c:\windows\system32\dllcache\stlnata.sys
2010-02-04 20:42 . 2001-10-24 11:25 33792 -c--a-w- c:\windows\system32\dllcache\smb0w.dll
2010-02-04 20:41 . 2001-10-24 11:02 6784 -c--a-w- c:\windows\system32\dllcache\serscan.sys
2010-02-04 20:40 . 2001-08-17 19:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2010-02-04 20:39 . 2008-04-13 23:11 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2010-02-04 20:38 . 2001-08-17 21:05 31872 -c--a-w- c:\windows\system32\dllcache\ovce.sys
2010-02-04 20:37 . 2001-08-17 19:20 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys
2010-02-04 20:36 . 2001-10-24 11:01 75520 -c--a-w- c:\windows\system32\dllcache\mxport.sys
2010-02-04 20:35 . 2001-08-17 20:52 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys
2010-02-04 20:34 . 2008-04-14 07:51 254464 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2010-02-04 20:33 . 2008-04-14 12:00 81920 -c--a-w- c:\windows\system32\dllcache\ieencode.dll
2010-02-04 20:32 . 2008-04-13 22:53 1041536 -c--a-w- c:\windows\system32\dllcache\hsfdpsp2.sys
2010-02-04 20:31 . 2001-10-24 10:58 907456 -c--a-w- c:\windows\system32\dllcache\hcf_msft.sys
2010-02-04 20:30 . 2001-08-17 20:52 7040 -c--a-w- c:\windows\system32\dllcache\exabyte2.sys
2010-02-04 20:29 . 2001-08-17 21:07 20192 -c--a-w- c:\windows\system32\dllcache\dpti2o.sys
2010-02-04 20:28 . 2001-10-24 11:24 216576 -c--a-w- c:\windows\system32\dllcache\cpscan.dll
2010-02-04 20:27 . 2008-04-13 23:16 17024 -c--a-w- c:\windows\system32\dllcache\bthenum.sys
2010-02-04 20:26 . 2001-10-24 11:24 61440 -c--a-w- c:\windows\system32\dllcache\acerscad.dll
2010-02-04 17:29 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-04 17:29 . 2010-02-04 17:30 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-02-04 17:29 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-02-04 09:49 . 2010-02-04 09:49 626688 ----a-w- c:\windows\system32\msvcr80.dll
2010-02-04 09:49 . 2010-02-04 09:49 548864 ----a-w- c:\windows\system32\msvcp80.dll
2010-02-04 09:49 . 2008-04-14 12:00 225792 ----a-w- c:\windows\R.COM
2010-02-04 09:49 . 2008-04-14 12:00 183808 ----a-w- c:\windows\system32\T.COM
2010-02-04 09:41 . 2010-02-04 09:41 -------- d-----w- c:\documents and settings\User\DoctorWeb
2010-02-04 09:37 . 2010-02-05 12:26 -------- d-----w- c:\program files\Microsoft Bootvis
2010-02-03 18:05 . 2010-02-03 18:17 -------- d-----w- c:\program files\Mass Effect 2
2010-02-03 16:39 . 2010-02-10 14:38 -------- d-----w- c:\program files\Common Files\BioWare
2010-02-02 23:04 . 2010-02-02 23:04 278984 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-02-02 23:04 . 2010-02-02 23:04 25416 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-02-02 22:55 . 2010-02-19 14:52 -------- d-----w- c:\program files\Zaklínač
2010-02-02 22:08 . 2010-02-02 22:08 -------- d-----w- c:\program files\Electronic Arts
2010-02-02 21:26 . 2010-02-02 21:26 -------- d-----w- c:\program files\2K Games
2010-02-02 21:25 . 2010-02-02 21:25 -------- d-----w- c:\program files\DIFX
2010-02-02 19:25 . 2009-03-27 00:16 12672 ----a-w- c:\windows\system32\drivers\cpuz132_x32.sys
2010-02-02 19:25 . 2010-02-02 19:25 -------- d-----w- c:\program files\CPUID
2010-02-02 19:23 . 2010-02-04 22:26 71326 ----a-w- c:\windows\BricoPackUninst.cmd
2010-02-02 19:21 . 2010-02-04 22:26 5415 ----a-w- c:\windows\BricoPackFoldersDelete.cmd
2010-02-02 19:21 . 2010-02-04 22:24 -------- d-----w- c:\windows\BricoPacks
2010-02-02 19:16 . 2003-02-26 21:27 36864 ----a-w- c:\windows\system32\wbsys.dll
2010-02-02 19:16 . 2010-02-03 12:03 -------- d-----w- c:\program files\AlienGUIse
2010-02-02 19:16 . 2010-02-02 19:16 -------- d-----w- c:\program files\Common Files\Stardock
2010-02-02 19:11 . 2010-02-02 19:11 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-02-02 19:11 . 2010-02-02 19:11 -------- d-----w- c:\program files\Dolphin Pod
2010-02-02 19:11 . 2010-02-02 19:51 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-02-02 18:52 . 2010-02-02 18:52 -------- d-----w- c:\program files\Recuva
2010-02-02 18:51 . 2010-02-02 18:51 -------- d-----w- c:\program files\Defraggler
2010-02-02 18:48 . 2010-02-18 18:10 -------- d-----w- c:\program files\Speccy
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----w- c:\program files\Common Files\Skype
2010-02-02 17:10 . 2010-02-02 17:10 -------- d-----r- c:\program files\Skype
2010-02-02 17:07 . 2010-02-02 17:07 -------- d-----w- c:\program files\QIP Infium
2010-02-02 16:56 . 2010-02-02 17:33 -------- d-----w- c:\program files\IObit
2010-02-02 16:51 . 2010-02-27 19:25 -------- d-----w- c:\program files\Steam
2010-02-02 16:44 . 2010-02-02 16:44 -------- d-----w- c:\program files\Last.fm
2010-02-02 16:42 . 2010-02-26 21:04 -------- d-----w- c:\program files\TuneUp Utilities 2010
2010-02-02 16:40 . 2010-02-02 16:40 -------- d-----w- c:\program files\Winamp Detect
2010-02-02 16:39 . 2010-02-02 16:41 -------- d-----w- c:\program files\Winamp
2010-02-02 16:35 . 2004-11-22 11:07 2304 ----a-w- c:\windows\system32\Machnm32.sys
2010-02-02 16:35 . 2007-02-09 11:17 17465 ----a-w- c:\windows\system32\drivers\pivot.sys
2010-02-02 16:35 . 2007-02-09 11:17 62009 ----a-w- c:\windows\system32\WPFB.DLL
2010-02-02 16:35 . 2007-02-09 11:17 11323 ----a-w- c:\windows\system32\drivers\pivotmou.sys
2010-02-02 16:35 . 2010-02-02 16:35 -------- d-----w- c:\program files\Portrait Displays
2010-02-02 16:24 . 2010-02-02 16:24 -------- d-----w- c:\program files\PeaZip
2010-02-02 16:20 . 2010-02-02 16:20 -------- d-----w- c:\program files\Common Files\xing shared
2010-02-02 16:18 . 2010-02-02 16:18 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-02-02 16:18 . 2010-02-02 16:18 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-02-02 16:18 . 2010-02-02 16:18 -------- d-----w- c:\program files\Real
2010-02-02 16:18 . 2010-02-02 16:23 -------- d-----w- c:\program files\Common Files\Real
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\VideoLAN
2010-02-02 16:12 . 2010-02-02 16:14 -------- d-----w- c:\program files\DivX
2010-02-02 16:12 . 2010-02-02 16:12 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-02-02 15:56 . 2008-05-02 01:38 301656 ----a-w- c:\windows\system32\BtCoreIf.dll
2010-02-02 15:56 . 2008-05-02 01:40 84496 ----a-w- c:\windows\system32\KemXML.dll
2010-02-02 15:56 . 2008-05-02 01:40 117264 ----a-w- c:\windows\system32\KemWnd.dll
2010-02-02 15:56 . 2008-05-02 01:39 145936 ----a-w- c:\windows\system32\KemUtil.dll
2010-02-02 15:56 . 2008-05-02 01:39 170512 ----a-w- c:\windows\system32\kemutb.dll
2010-02-02 15:55 . 2010-02-02 15:56 -------- d-----w- c:\program files\Common Files\Logishrd
2010-02-02 15:55 . 2010-02-02 15:55 -------- d-----w- c:\program files\Logitech
2010-02-02 15:01 . 2010-02-02 15:15 95259 ----a-w- c:\windows\system32\drivers\klick.dat
2010-02-02 15:01 . 2010-02-02 15:15 108059 ----a-w- c:\windows\system32\drivers\klin.dat
2010-02-02 15:01 . 2010-02-27 21:29 884768 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2010-02-02 15:01 . 2010-02-27 21:29 5798944 --sha-w- c:\windows\system32\drivers\fidbox.dat
2010-02-02 15:01 . 2010-02-02 15:01 -------- d-----w- c:\program files\Kaspersky Lab
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-27 21:35 . 2008-04-14 12:00 97980 ----a-w- c:\windows\system32\perfc005.dat
2010-02-27 21:35 . 2008-04-14 12:00 481042 ----a-w- c:\windows\system32\perfh005.dat
2010-02-27 21:29 . 2010-02-02 15:01 5152 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2010-02-27 21:29 . 2010-02-02 15:01 47432 --sha-w- c:\windows\system32\drivers\fidbox.idx
2010-02-19 15:31 . 2010-02-01 16:32 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-04 22:26 . 2008-04-14 12:00 219648 ----a-w- c:\windows\system32\uxtheme.dll
2010-02-03 16:13 . 2010-02-01 16:40 -------- d-----w- c:\program files\EXPERTool
2010-02-02 21:25 . 2010-02-01 16:47 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Common Files\Portrait Displays
2010-02-02 16:34 . 2010-02-02 16:34 -------- d-----w- c:\program files\Acer Display
2010-02-02 15:57 . 2010-02-02 15:57 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
2010-02-02 15:56 . 2010-02-02 15:56 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2010-02-02 15:15 . 2008-01-29 17:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2010-02-02 12:47 . 2010-02-01 16:45 -------- d-----w- c:\program files\NVIDIA Corporation
2010-02-02 12:47 . 2010-02-01 16:47 -------- d-----w- c:\program files\AGEIA Technologies
2010-02-02 08:28 . 2010-02-01 16:31 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-01 16:34 . 2010-02-01 16:34 -------- d-----w- c:\program files\Realtek
2010-02-01 16:32 . 2010-02-01 16:31 -------- d-----w- c:\program files\VIA
2010-02-01 16:25 . 2010-02-01 16:25 -------- d-----w- c:\program files\Intel
2010-02-01 16:16 . 2010-02-01 16:16 -------- d-----w- c:\program files\microsoft frontpage
2010-02-01 16:16 . 2010-02-01 16:16 8738 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-02-01 16:16 . 2010-02-01 16:16 2112 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-02-01 16:16 . 2010-02-01 16:16 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-02-01 16:13 . 2010-02-01 16:13 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-22 01:37 . 2010-01-22 01:37 41872 ----a-w- c:\windows\system32\xfcodec.dll
2010-01-12 11:03 . 2009-10-05 10:10 6359168 ----a-w- c:\windows\system32\nv4_disp.dll
2010-01-12 11:03 . 2009-10-05 10:10 10276768 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-01-11 21:17 . 2010-01-11 21:17 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-01-11 21:17 . 2010-01-11 21:17 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-01-11 21:17 . 2010-01-11 21:17 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-01-11 21:17 . 2010-01-11 21:17 13666408 ----a-w- c:\windows\system32\nvcpl.dll
2010-01-11 21:17 . 2010-01-11 21:17 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-01-11 21:17 . 2010-01-11 21:17 81920 ----a-w- c:\windows\system32\nvwddi.dll
2009-12-31 16:50 . 2008-04-14 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2009-12-21 19:08 . 2008-04-14 12:00 916480 ------w- c:\windows\system32\wininet.dll
2009-12-17 07:42 . 2010-02-05 18:40 343552 ----a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:10 . 2008-04-14 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
2009-12-09 10:11 . 2008-04-14 12:00 2147328 ------w- c:\windows\system32\ntoskrnl.exe
2009-12-09 10:11 . 2008-04-14 08:06 2025984 ------w- c:\windows\system32\ntkrnlpa.exe
2009-12-04 18:22 . 2008-04-14 12:00 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-10-05 17:34 . 2010-02-02 17:08 118000 ----a-w- c:\program files\mozilla firefox\components\qippipe.dll
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\documents and settings\LocalService\Plocha ----
------- Sigcheck -------
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 13E794E5591776CBC71055A7B3CC1D5F . 976384 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe" [2009-07-15 33636352]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2010-02-02 201992]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-01-11 13666408]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-2-2 805392]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2008-05-02 01:42 72208 ----a-w- c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WB]
2001-12-20 22:34 24576 ----a-w- c:\program files\AlienGUIse\fastload.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Documents and Settings\\All Users\\Data aplikací\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 2009\\Czech\\setup.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Mass Effect 2\\Binaries\\MassEffect2.exe"=
"c:\\Program Files\\Mass Effect 2\\MassEffect2Launcher.exe"=
"c:\\Program Files\\Mass Effect\\Binaries\\MassEffect.exe"=
"c:\\Program Files\\Mass Effect\\MassEffectLauncher.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"e:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_Launcher.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP_DX11.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\aliens vs predator\\AvP.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\call of duty modern warfare 2\\iw4sp.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx9.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Dx10.exe"=
"e:\\Program Files\\Ubisoft\\Assassin's Creed\\AssassinsCreed_Launcher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead 2\\left4dead2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\left 4 dead\\left4dead.exe"=
"e:\\Program Files\\LOTR The Battle for Middle-Earth(tm)\\game.dat"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29.1.2008 18:29 33808]
R2 DvmMDES;DeviceVM Meta Data Export Service;c:\asus.sys\config\DVMExportService.exe [17.7.2009 15:25 319488]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [2.2.2010 17:34 90112]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [18.12.2009 0:12 1044808]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [13.3.2008 19:02 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [25.3.2008 20:07 24592]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys [14.10.2009 7:24 10064]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [1.2.2010 17:32 1381632]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2.2.2010 20:11 691696]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [5.2.2010 13:37 90112]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Obsah adresáře 'Naplánované úlohy'
2010-02-27 c:\windows\Tasks\Automatic troubleshooting.job
- c:\program files\TuneUp Utilities 2010\TuneUpSystemStatusCheck.exe [2009-12-17 23:18]
2010-02-26 c:\windows\Tasks\Automatická údržba.job
- c:\program files\TuneUp Utilities 2010\OneClickStarter.exe [2009-12-17 23:18]
2010-02-27 c:\windows\Tasks\SmartDefrag.job
- c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe [2010-02-02 14:30]
.
.
------- Doplňkový sken -------
.
uDefault_Search_URL = hxxp://www.google.com
uSearchAssistant = hxxp://www.google.com/ie
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedie (cs)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - hxxp://search.centrum.cz/index.php?tool ... m-1.0.0&q=
FF - prefs.js: network.proxy.type - 2
FF - component: c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\program files\Mozilla Firefox\components\qippipe.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\firefox\ext\components\nprpffbrowserrecordext.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-27 22:37
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe 1????????????????????????????????????????????????
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_USERS\S-1-5-21-507921405-1604221776-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\HID\Vid_046d&Pid_c529&MI_01&Col01\8&149ea30e&0&0000\LogConf]
@DACL=(02 0000)
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(260)
c:\windows\system32\klogon.dll
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
c:\program files\AlienGUIse\fastload.dll
.
Celkový čas: 2010-02-27 22:38:56
ComboFix-quarantined-files.txt 2010-02-27 21:38
Před spuštěním: Volných bajtů: 133 751 341 056
Po spuštění: Volných bajtů: 133 706 248 192
- - End Of File - - FF43CAB258DC7A982EE3B80342CDDA32
- Damned
- Tvůrce článků
-
Master Level 9
- Příspěvky: 8353
- Registrován: prosinec 06
- Bydliště: Rokycany
- Pohlaví:
- Stav:
Offline
- Kontakt:
Re: Zamrznutí PC.
Odinstaluj ComboFix ( nutné ) .
ComboFix se odinstaluje takto:
Start-Spustit a zadej Combofix[mezera]/uninstall
Stáhni si T-Cleaner ( nutné - smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš)
*****************************************************************************************************************************************
Stáhni si OTL na Plochu.
Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Output klikni na minimal Output.Pod Standard Registry změň na All. Zatrhni LOP Check a Purity Check. File age změň na 14 days. Všechny ostatní nastavení ponech jak jsou. Klikni na Run Scan. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj
ComboFix se odinstaluje takto:
Start-Spustit a zadej Combofix[mezera]/uninstall
Stáhni si T-Cleaner ( nutné - smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš)
*****************************************************************************************************************************************
Stáhni si OTL na Plochu.
Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Output klikni na minimal Output.Pod Standard Registry změň na All. Zatrhni LOP Check a Purity Check. File age změň na 14 days. Všechny ostatní nastavení ponech jak jsou. Klikni na Run Scan. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt
Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Re: Zamrznutí PC.
OTL:
OTL logfile created on: 27.2.2010 23:15:29 - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = E:\Dokumenty\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 80,00% Memory free
7,00 Gb Paging File | 7,00 Gb Available in Paging File | 95,00% Paging File free
Paging file location(s): C:\pagefile.sys 4608 4608 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,88 Gb Total Space | 124,77 Gb Free Space | 53,58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 233,76 Gb Total Space | 47,96 Gb Free Space | 20,52% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OEM-9C5652A5A63
Current User Name: User
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - E:\Dokumenty\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\WINDOWS\system32\PnkBstrA.exe ()
PRC - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe (Kaspersky Lab)
PRC - C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
PRC - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (TuneUp Software)
PRC - C:\WINDOWS\ATKKBService.exe (ASUSTeK COMPUTER INC.)
PRC - C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
PRC - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe ()
PRC - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe ()
PRC - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe (Portrait Displays, Inc.)
PRC - C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
PRC - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)
PRC - C:\Program Files\AlienGUIse\wbload.exe (Stardock Systems, Inc)
========== Modules (SafeList) ==========
MOD - E:\Dokumenty\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll (Microsoft Corporation)
MOD - C:\Program Files\Logitech\SetPoint\lgscroll.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPoint\GameHook.dll (Logitech, Inc.)
MOD - C:\Program Files\AlienGUIse\wblind.dll (Stardock.Net, Inc)
MOD - C:\Program Files\AlienGUIse\wbhelp.dll (Stardock.Net, Inc)
========== Win32 Services (SafeList) ==========
SRV - (DvmMDES) -- File not found
SRV - (PnkBstrA) -- C:\WINDOWS\system32\PnkBstrA.exe ()
SRV - (TuneUp.Defrag) -- C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe (TuneUp Software)
SRV - (AVP) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe (Kaspersky Lab)
SRV - (nvsvc) -- C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (TuneUp Software)
SRV - (UxTuneUp) -- C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
SRV - (ATKKeyboardService) -- C:\WINDOWS\ATKKBService.exe (ASUSTeK COMPUTER INC.)
SRV - (AsSysCtrlService) -- C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe ()
SRV - (NetTcpPortSharing) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (DTSRVC) -- C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe ()
SRV - (PdiService) -- C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe (Portrait Displays, Inc.)
SRV - (LBTServ) -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (W3SVC) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
SRV - (SMTPSVC) Simple Mail Transport Protocol (SMTP) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
SRV - (IISADMIN) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
SRV - (InCDsrv) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)
SRV - (NMIndexingService) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG)
SRV - (NBService) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (Nero AG)
SRV - (IDriverT) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ==========
DRV - (atksgt) -- C:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (sptd) -- C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (KLIF) -- C:\WINDOWS\system32\drivers\klif.sys (Kaspersky Lab)
DRV - (klbg) -- C:\WINDOWS\system32\drivers\klbg.sys (Kaspersky Lab)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (TuneUpUtilitiesDrv) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys (TuneUp Software)
DRV - (RivaTuner32) -- C:\Program Files\RivaTuner v2.24\RivaTuner32.sys ()
DRV - (JRAID) -- C:\WINDOWS\system32\DRIVERS\jraid.sys (JMicron Technology Corp.)
DRV - (VIAHdAudAddService) -- C:\WINDOWS\system32\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV - (RTLE8023xp) -- C:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (PxHelp20) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (asusgsb) -- C:\WINDOWS\system32\drivers\asusgsb.sys (ASUSTeK Computer Inc.)
DRV - (Video3D) -- C:\WINDOWS\system32\drivers\Video3D32.sys (ASUSTeK COMPUTER INC.)
DRV - (asuskbnt) -- C:\WINDOWS\system32\drivers\atkkbnt.sys (ASUSTeK COMPUTER INC.)
DRV - (PdiPorts) -- C:\WINDOWS\system32\drivers\PdiPorts.sys (Portrait Displays, Inc.)
DRV - (kl1) -- C:\WINDOWS\system32\drivers\kl1.sys (Kaspersky Lab)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
DRV - (klim5) -- C:\WINDOWS\system32\drivers\klim5.sys (Kaspersky Lab)
DRV - (KLFLTDEV) -- C:\WINDOWS\system32\drivers\klfltdev.sys (Kaspersky Lab)
DRV - (LMouFilt) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (AsIO) -- C:\WINDOWS\system32\drivers\AsIO.sys ()
DRV - (InCDfs) -- C:\WINDOWS\system32\drivers\InCDfs.sys (Nero AG)
DRV - (incdrm) -- C:\WINDOWS\system32\drivers\InCDRm.sys (Nero AG)
DRV - (InCDPass) -- C:\WINDOWS\system32\drivers\InCDPass.sys (Nero AG)
DRV - (TBPanel) -- C:\WINDOWS\system32\drivers\TBPanel.sys (Windows (R) 2000 DDK provider)
DRV - (Pivot) -- C:\WINDOWS\system32\drivers\pivot.sys (Portrait Displays, Inc.)
DRV - (pivotmou) -- C:\WINDOWS\system32\drivers\pivotmou.sys (Portrait Displays, Inc.)
DRV - (EIO_XP) -- C:\WINDOWS\system32\drivers\EIO_XP.sys (ASUSTeK Computer Inc.)
DRV - (MTsensor) -- C:\WINDOWS\system32\drivers\ASACPI.sys ()
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.selectedEngine: "Wikipedie (cs)"
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.0.2
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:6.1.20091216W
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:0.0.0
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0
FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:3.3.0.3971
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.8
FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20100207
FF - prefs.js..keyword.URL: "http://search.centrum.cz/index.php?toolbar=centrum-1.0.0&q="
FF - prefs.js..network.proxy.type: 2
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord\firefox\ext [2010.02.02 17:23:31 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2010.02.04 10:11:37 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.02.18 19:28:12 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.02.18 19:28:12 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2010.02.02 17:22:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2010.02.02 17:24:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\THBExt [2010.02.02 16:01:41 | 000,000,000 | ---D | M]
[2010.02.02 13:01:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions
[2010.02.02 13:01:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2010.02.02 09:27:53 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.02.27 20:04:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\3kd8c340.default\extensions
[2010.02.27 18:39:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions
[2010.02.26 20:42:37 | 000,000,000 | ---D | M] (Flagfox) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
[2010.02.02 12:57:18 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2010.02.02 12:57:17 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010.02.08 15:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\nasanightlaunch@example.com
[2010.02.02 20:11:58 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\searchplugins\daemon-search.xml
[2010.02.02 18:08:32 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\searchplugins\qipsearch.xml
[2010.02.27 22:52:13 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.02.18 19:28:12 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.02.02 18:10:35 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}
[2010.02.18 19:28:07 | 000,023,512 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.02.18 19:28:07 | 000,137,176 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2009.10.05 18:34:50 | 000,118,000 | ---- | M] () -- C:\Program Files\Mozilla Firefox\components\qippipe.dll
[2009.11.14 01:47:38 | 000,098,304 | ---- | M] (DivX, Inc) -- C:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
[2010.02.18 19:28:09 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2010.02.02 17:22:07 | 000,140,864 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
[2010.02.02 17:24:07 | 000,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
[2010.02.02 17:21:24 | 000,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
[2010.01.12 21:03:50 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
[2009.12.22 04:24:43 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2009.12.22 04:24:43 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2009.12.22 04:24:43 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2009.12.22 04:24:43 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2009.12.22 04:24:43 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2009.12.22 04:24:43 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2010.02.27 21:54:06 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll (Kaspersky Lab)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe (Kaspersky Lab)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = [binary data]
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Přidat do blokovaných reklamních lišt - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm ()
O9 - Extra Button: Statisktika ochrany webového provozu - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll (Kaspersky Lab)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WB: DllName - C:\Program Files\AlienGUIse\fastload.dll - C:\Program Files\AlienGUIse\fastload.dll (Stardock)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\User\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\User\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*
========== Files/Folders - Created Within 14 Days ==========
[2010.02.27 22:51:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\User\Recent
[2010.02.27 22:50:00 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010.02.27 22:42:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010.02.27 21:38:57 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010.02.27 20:03:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2010.02.27 18:29:21 | 000,000,000 | ---D | C] -- C:\Program Files\TrendMicro
[2010.02.26 22:02:09 | 000,000,000 | ---D | C] -- C:\Program Files\RivaTuner v2.24
[2010.02.25 20:28:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Electronic Arts
[2010.02.20 17:37:37 | 000,000,000 | --SD | C] -- C:\Documents and Settings\User\Dokumenty\Obrázky
[2010.02.19 16:27:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Dokumenty\ASUS
[2010.02.19 16:25:09 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstee.sys
[2010.02.19 16:25:08 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax
[2010.02.19 16:25:08 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsink.ax
[2010.02.19 16:25:08 | 000,015,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\streamip.sys
[2010.02.19 16:25:08 | 000,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndisip.sys
[2010.02.19 16:25:07 | 000,011,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\slip.sys
[2010.02.19 16:25:06 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstcodec.sys
[2010.02.19 16:25:05 | 000,085,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nabtsfec.sys
[2010.02.19 16:25:04 | 000,017,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ccdecode.sys
[2010.02.19 16:25:01 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax
[2010.02.19 16:25:01 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kswdmcap.ax
[2010.02.19 16:25:01 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax
[2010.02.19 16:25:01 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kstvtune.ax
[2010.02.19 16:25:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vidcap.ax
[2010.02.19 16:25:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vidcap.ax
[2010.02.19 16:25:00 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vfwwdm32.dll
[2010.02.19 16:25:00 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vfwwdm32.dll
[2010.02.19 16:24:59 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax
[2010.02.19 16:24:59 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksxbar.ax
[2010.02.19 16:24:36 | 000,102,400 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\NetVideo_SBS.ax
[2010.02.19 16:24:35 | 002,101,248 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\ATKDispCPL.dll
[2010.02.19 16:24:35 | 000,253,952 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\ATKKBService.exe
[2010.02.19 16:24:35 | 000,195,968 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\ATKDISP.dll
[2010.02.19 16:24:35 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\devcon.exe
[2010.02.19 16:24:35 | 000,012,416 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\drivers\asusgsb.sys
[2010.02.19 16:24:35 | 000,012,416 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\asusgsb.sys
[2010.02.19 16:24:35 | 000,011,264 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\ATKOSDMini.DLL
[2010.02.19 16:24:35 | 000,011,136 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\drivers\atkkbnt.sys
[2010.02.19 16:24:35 | 000,010,752 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\drivers\Video3D32.sys
[2010.02.19 16:24:35 | 000,008,704 | ---- | C] (ASMT) -- C:\WINDOWS\System32\drivers\Bravo.sys
[2010.02.19 16:24:34 | 005,434,880 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\ATKOSDX32.dll
[2010.02.19 16:24:34 | 000,795,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\DPInst.exe
[2010.02.19 16:24:34 | 000,036,352 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\ATKOGL32.dll
[2010.02.19 16:16:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\DNA
[2010.02.19 16:16:49 | 000,000,000 | ---D | C] -- C:\Program Files\DNA
[2010.02.19 16:16:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Data aplikací\DNA
[2010.02.19 14:32:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\CAPCOM
[2010.02.18 23:17:48 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010.02.18 19:27:04 | 000,012,288 | R--- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\drivers\EIO_XP.sys
[2010.02.18 19:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\RivaTuner
[2010.02.18 19:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Data aplikací\WinRAR
[2010.02.18 19:05:21 | 000,000,000 | ---D | C] -- C:\Program Files\Software Informer
[2010.02.18 18:44:09 | 000,000,000 | ---D | C] -- C:\Program Files\Downloaded Installations
[2010.02.18 18:22:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\AliensVsPredator
[2010.02.16 19:01:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Data aplikací\Xfire
[2010.02.16 19:00:58 | 000,000,000 | ---D | C] -- C:\Program Files\Xfire
[2010.02.05 22:00:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\TuneUp Software
[2010.02.05 20:34:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Adobe
[2010.02.01 17:22:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2010.02.01 17:19:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft
[2010.02.01 17:16:37 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft
[2010.02.01 17:16:37 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 14 Days ==========
[2010.02.27 23:16:25 | 004,718,592 | ---- | M] () -- C:\Documents and Settings\User\NTUSER.DAT
[2010.02.27 23:11:07 | 001,163,318 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.02.27 23:11:07 | 000,482,008 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.02.27 23:11:07 | 000,481,042 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2010.02.27 23:11:07 | 000,097,980 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2010.02.27 23:11:07 | 000,085,874 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.02.27 23:10:01 | 000,892,960 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox2.dat
[2010.02.27 23:10:01 | 000,005,180 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox2.idx
[2010.02.27 23:07:18 | 000,000,564 | ---- | M] () -- C:\WINDOWS\tasks\Automatic troubleshooting.job
[2010.02.27 23:06:57 | 000,263,559 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2010.02.27 23:06:57 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.02.27 23:06:42 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.02.27 23:06:41 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.02.27 23:05:17 | 005,798,944 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox.dat
[2010.02.27 23:05:17 | 000,047,432 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox.idx
[2010.02.27 23:05:10 | 000,000,272 | -HS- | M] () -- C:\Documents and Settings\User\ntuser.ini
[2010.02.27 23:05:03 | 016,632,146 | -H-- | M] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\IconCache.db
[2010.02.27 22:50:54 | 000,000,382 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010.02.27 22:37:19 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.02.27 21:54:06 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010.02.27 21:39:20 | 000,000,293 | RHS- | M] () -- C:\boot.ini
[2010.02.27 14:44:02 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010.02.27 14:43:59 | 000,016,896 | ---- | M] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.02.27 11:02:02 | 005,959,299 | ---- | M] () -- C:\WINDOWS\REGBK01.ZIP
[2010.02.26 22:13:16 | 004,980,736 | ---- | M] () -- C:\Documents and Settings\User\NTUSER.DAT_tureg_old
[2010.02.26 20:15:01 | 000,000,474 | ---- | M] () -- C:\WINDOWS\tasks\Automatická údržba.job
[2010.02.19 15:42:35 | 000,000,338 | ---- | M] () -- C:\WINDOWS\level.ini
[2010.02.18 23:17:48 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010.02.18 19:29:36 | 000,025,933 | ---- | M] () -- C:\WINDOWS\Ascd_tmp.ini
[2010.02.17 23:56:44 | 000,022,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.02.17 23:56:44 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\PnkBstrK.sys
[2010.02.17 23:56:28 | 000,103,736 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010.02.17 23:56:23 | 000,669,184 | ---- | M] () -- C:\WINDOWS\System32\pbsvc.exe
[2010.02.17 23:56:23 | 000,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010.02.16 18:53:16 | 000,000,097 | ---- | M] () -- C:\WINDOWS\tmp2Level.ini
[2010.02.16 18:48:49 | 001,020,991 | ---- | M] () -- C:\WINDOWS\content.csv
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.02.27 22:50:53 | 000,000,382 | ---- | C] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010.02.27 11:01:29 | 005,959,299 | ---- | C] () -- C:\WINDOWS\REGBK01.ZIP
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdRUS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdKOR.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdJPN.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdCHT.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdCHS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdGER.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdFRA.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdENG.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdRUS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdKOR.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdJPN.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdCHT.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdCHS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdGER.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdFRA.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdENG.rc0
[2010.02.19 16:24:35 | 000,196,662 | ---- | C] () -- C:\WINDOWS\System32\ATKF16.rc0
[2010.02.19 16:24:35 | 000,196,662 | ---- | C] () -- C:\WINDOWS\System32\ATKF12.rc0
[2010.02.19 16:24:35 | 000,196,653 | ---- | C] () -- C:\WINDOWS\System32\drivers\aVivid.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nVivid.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nStandard.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nAsmedia.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nAdvanced.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\aAdvanced.bin
[2010.02.19 16:24:35 | 000,196,582 | ---- | C] () -- C:\WINDOWS\System32\drivers\aStandard.bin
[2010.02.19 16:24:35 | 000,196,582 | ---- | C] () -- C:\WINDOWS\System32\drivers\aAsmedia.bin
[2010.02.19 16:24:35 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asrussian.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\askorean.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asjapan.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\aschs.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asgerman.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asfrench.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\aseng.dll
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\trialatkgft.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\trialatkgeneral.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atksht.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atkgtvt.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atkgft.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atkdst.rc0
[2010.02.19 16:24:35 | 000,024,632 | ---- | C] () -- C:\WINDOWS\System32\atkrec.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkshon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkshoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkgtvon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkgtvoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkdson.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkdsoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkshon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkshoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkgtvon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkgtvoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkdson.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkdsoff.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\trialatkgfon.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\trialatkgfoff.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\atkgfon.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\atkgfoff.rc0
[2010.02.19 16:24:35 | 000,002,963 | ---- | C] () -- C:\WINDOWS\System32\xvid.inf
[2010.02.19 16:24:35 | 000,001,540 | ---- | C] () -- C:\WINDOWS\System32\ATKF16.rc1
[2010.02.19 16:24:35 | 000,001,540 | ---- | C] () -- C:\WINDOWS\System32\ATKF12.rc1
[2010.02.19 16:24:35 | 000,000,018 | ---- | C] () -- C:\WINDOWS\System32\atkid.ini
[2010.02.19 16:24:34 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\ASCHT.dll
[2010.02.19 16:24:34 | 000,006,697 | ---- | C] () -- C:\WINDOWS\System32\asusgsb.cat
[2010.02.19 16:24:34 | 000,002,414 | ---- | C] () -- C:\WINDOWS\System32\asusgsb.inf
[2010.02.17 23:56:44 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.02.17 23:56:44 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\PnkBstrK.sys
[2010.02.17 23:56:24 | 000,103,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010.02.17 23:56:23 | 000,669,184 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2010.02.17 23:56:23 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010.02.16 18:48:49 | 001,020,991 | ---- | C] () -- C:\WINDOWS\content.csv
[2010.02.16 18:48:40 | 000,000,338 | ---- | C] () -- C:\WINDOWS\level.ini
[2010.02.16 18:48:40 | 000,000,097 | ---- | C] () -- C:\WINDOWS\tmp2Level.ini
[2010.02.05 19:40:38 | 000,023,016 | ---- | C] () -- C:\WINDOWS\System32\smtpctrs.ini
[2010.02.05 19:40:38 | 000,001,008 | ---- | C] () -- C:\WINDOWS\System32\ntfsdrct.ini
[2010.02.05 19:40:17 | 000,058,716 | ---- | C] () -- C:\WINDOWS\System32\w3ctrs.ini
[2010.02.05 19:40:17 | 000,014,691 | ---- | C] () -- C:\WINDOWS\System32\axperf.ini
[2010.02.05 19:40:12 | 000,018,097 | ---- | C] () -- C:\WINDOWS\System32\infoctrs.ini
[2010.02.05 13:37:45 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2010.02.05 13:37:44 | 000,012,400 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2010.02.05 13:37:42 | 000,011,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2010.02.05 13:37:42 | 000,010,216 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2010.02.03 22:12:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010.02.03 22:07:18 | 000,000,034 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2010.02.03 00:04:04 | 000,278,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2010.02.03 00:04:04 | 000,025,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2010.02.02 20:16:39 | 000,000,056 | ---- | C] () -- C:\WINDOWS\wb.ini
[2010.02.02 20:11:53 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010.02.02 17:35:03 | 000,002,304 | ---- | C] () -- C:\WINDOWS\System32\Machnm32.sys
[2010.02.02 17:31:42 | 000,000,025 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2010.02.02 13:06:05 | 000,016,896 | ---- | C] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.02.02 12:57:06 | 000,009,327 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\dBase.EML
[2010.02.02 12:57:06 | 000,000,760 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\setup_ldm.iss
[2010.02.02 09:26:50 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010.02.01 17:34:12 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll
[2010.02.01 17:24:36 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2010.02.01 17:24:25 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini
[2010.02.01 17:24:15 | 000,025,933 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2010.02.01 17:24:14 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010.01.22 02:37:16 | 000,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2009.10.05 11:10:18 | 000,007,274 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
========== LOP Check ==========
[2010.02.05 19:43:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ASUS OC Profiles
[2010.02.02 20:11:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2010.02.17 16:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EPU
[2010.02.02 17:46:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Last.fm
[2010.02.01 18:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2010.02.01 18:16:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
[2010.02.01 18:16:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ubisoft
[2010.02.01 18:16:50 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.02.02 12:57:22 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\User\Data aplikací\.#
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\DAEMON Tools Lite
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\DisplayTune
[2010.02.20 00:53:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\DNA
[2010.02.04 10:53:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\EurekaLog
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Gearbox Software
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\ICQ
[2010.02.03 15:34:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\IObit
[2010.02.02 12:57:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Leadertech
[2010.02.25 16:14:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\My Battle for Middle-earth Files
[2010.02.18 19:12:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\PeaZip
[2010.02.02 18:09:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\QIP
[2010.02.02 19:43:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\TeamViewer
[2010.02.02 13:01:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Thunderbird
[2010.02.02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Touchstone
[2010.02.02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\TuneUp Software
[2010.02.02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\TwoWorldsCP
[2010.02.02 12:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Ubisoft
[2010.02.27 23:07:18 | 000,000,564 | ---- | M] () -- C:\WINDOWS\Tasks\Automatic troubleshooting.job
[2010.02.26 20:15:01 | 000,000,474 | ---- | M] () -- C:\WINDOWS\Tasks\Automatická údržba.job
[2010.02.27 22:50:54 | 000,000,382 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag.job
========== Purity Check ==========
========== Files - Unicode (All) ==========
[2010.02.02 12:57:54 | 000,000,000 | ---D | M](C:\Documents and Settings\User\Dokumenty\??? ????) -- C:\Documents and Settings\User\Dokumenty\Мои игры
[2010.02.02 12:57:54 | 000,000,000 | ---D | C](C:\Documents and Settings\User\Dokumenty\??? ????) -- C:\Documents and Settings\User\Dokumenty\Мои игры
< End of report >
OTL logfile created on: 27.2.2010 23:15:29 - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = E:\Dokumenty\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 80,00% Memory free
7,00 Gb Paging File | 7,00 Gb Available in Paging File | 95,00% Paging File free
Paging file location(s): C:\pagefile.sys 4608 4608 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,88 Gb Total Space | 124,77 Gb Free Space | 53,58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 233,76 Gb Total Space | 47,96 Gb Free Space | 20,52% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OEM-9C5652A5A63
Current User Name: User
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - E:\Dokumenty\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\WINDOWS\system32\PnkBstrA.exe ()
PRC - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe (Kaspersky Lab)
PRC - C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
PRC - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (TuneUp Software)
PRC - C:\WINDOWS\ATKKBService.exe (ASUSTeK COMPUTER INC.)
PRC - C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
PRC - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe ()
PRC - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe ()
PRC - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe (Portrait Displays, Inc.)
PRC - C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
PRC - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)
PRC - C:\Program Files\AlienGUIse\wbload.exe (Stardock Systems, Inc)
========== Modules (SafeList) ==========
MOD - E:\Dokumenty\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll (Microsoft Corporation)
MOD - C:\Program Files\Logitech\SetPoint\lgscroll.dll (Logitech, Inc.)
MOD - C:\Program Files\Logitech\SetPoint\GameHook.dll (Logitech, Inc.)
MOD - C:\Program Files\AlienGUIse\wblind.dll (Stardock.Net, Inc)
MOD - C:\Program Files\AlienGUIse\wbhelp.dll (Stardock.Net, Inc)
========== Win32 Services (SafeList) ==========
SRV - (DvmMDES) -- File not found
SRV - (PnkBstrA) -- C:\WINDOWS\system32\PnkBstrA.exe ()
SRV - (TuneUp.Defrag) -- C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe (TuneUp Software)
SRV - (AVP) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe (Kaspersky Lab)
SRV - (nvsvc) -- C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
SRV - (TuneUp.UtilitiesSvc) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe (TuneUp Software)
SRV - (UxTuneUp) -- C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
SRV - (ATKKeyboardService) -- C:\WINDOWS\ATKKBService.exe (ASUSTeK COMPUTER INC.)
SRV - (AsSysCtrlService) -- C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe ()
SRV - (NetTcpPortSharing) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (DTSRVC) -- C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe ()
SRV - (PdiService) -- C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe (Portrait Displays, Inc.)
SRV - (LBTServ) -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (W3SVC) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
SRV - (SMTPSVC) Simple Mail Transport Protocol (SMTP) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
SRV - (IISADMIN) -- C:\WINDOWS\system32\inetsrv\inetinfo.exe (Microsoft Corporation)
SRV - (InCDsrv) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Nero AG)
SRV - (NMIndexingService) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG)
SRV - (NBService) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (Nero AG)
SRV - (IDriverT) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ==========
DRV - (atksgt) -- C:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (sptd) -- C:\WINDOWS\System32\Drivers\sptd.sys ()
DRV - (KLIF) -- C:\WINDOWS\system32\drivers\klif.sys (Kaspersky Lab)
DRV - (klbg) -- C:\WINDOWS\system32\drivers\klbg.sys (Kaspersky Lab)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (TuneUpUtilitiesDrv) -- C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys (TuneUp Software)
DRV - (RivaTuner32) -- C:\Program Files\RivaTuner v2.24\RivaTuner32.sys ()
DRV - (JRAID) -- C:\WINDOWS\system32\DRIVERS\jraid.sys (JMicron Technology Corp.)
DRV - (VIAHdAudAddService) -- C:\WINDOWS\system32\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV - (RTLE8023xp) -- C:\WINDOWS\system32\drivers\Rtenicxp.sys (Realtek Semiconductor Corporation )
DRV - (PxHelp20) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (asusgsb) -- C:\WINDOWS\system32\drivers\asusgsb.sys (ASUSTeK Computer Inc.)
DRV - (Video3D) -- C:\WINDOWS\system32\drivers\Video3D32.sys (ASUSTeK COMPUTER INC.)
DRV - (asuskbnt) -- C:\WINDOWS\system32\drivers\atkkbnt.sys (ASUSTeK COMPUTER INC.)
DRV - (PdiPorts) -- C:\WINDOWS\system32\drivers\PdiPorts.sys (Portrait Displays, Inc.)
DRV - (kl1) -- C:\WINDOWS\system32\drivers\kl1.sys (Kaspersky Lab)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
DRV - (klim5) -- C:\WINDOWS\system32\drivers\klim5.sys (Kaspersky Lab)
DRV - (KLFLTDEV) -- C:\WINDOWS\system32\drivers\klfltdev.sys (Kaspersky Lab)
DRV - (LMouFilt) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (AsIO) -- C:\WINDOWS\system32\drivers\AsIO.sys ()
DRV - (InCDfs) -- C:\WINDOWS\system32\drivers\InCDfs.sys (Nero AG)
DRV - (incdrm) -- C:\WINDOWS\system32\drivers\InCDRm.sys (Nero AG)
DRV - (InCDPass) -- C:\WINDOWS\system32\drivers\InCDPass.sys (Nero AG)
DRV - (TBPanel) -- C:\WINDOWS\system32\drivers\TBPanel.sys (Windows (R) 2000 DDK provider)
DRV - (Pivot) -- C:\WINDOWS\system32\drivers\pivot.sys (Portrait Displays, Inc.)
DRV - (pivotmou) -- C:\WINDOWS\system32\drivers\pivotmou.sys (Portrait Displays, Inc.)
DRV - (EIO_XP) -- C:\WINDOWS\system32\drivers\EIO_XP.sys (ASUSTeK Computer Inc.)
DRV - (MTsensor) -- C:\WINDOWS\system32\drivers\ASACPI.sys ()
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.selectedEngine: "Wikipedie (cs)"
FF - prefs.js..browser.startup.homepage: "http://www.google.com"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.0.2
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:6.1.20091216W
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:0.0.0
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0
FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:3.3.0.3971
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.8
FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20100207
FF - prefs.js..keyword.URL: "http://search.centrum.cz/index.php?toolbar=centrum-1.0.0&q="
FF - prefs.js..network.proxy.type: 2
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord\firefox\ext [2010.02.02 17:23:31 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2010.02.04 10:11:37 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.02.18 19:28:12 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.02.18 19:28:12 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2010.02.02 17:22:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2010.02.02 17:24:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\THBExt [2010.02.02 16:01:41 | 000,000,000 | ---D | M]
[2010.02.02 13:01:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions
[2010.02.02 13:01:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2010.02.02 09:27:53 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2010.02.27 20:04:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\3kd8c340.default\extensions
[2010.02.27 18:39:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions
[2010.02.26 20:42:37 | 000,000,000 | ---D | M] (Flagfox) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
[2010.02.02 12:57:18 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2010.02.02 12:57:17 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010.02.08 15:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\extensions\nasanightlaunch@example.com
[2010.02.02 20:11:58 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\searchplugins\daemon-search.xml
[2010.02.02 18:08:32 | 000,002,061 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\fd7cpcfr.default\searchplugins\qipsearch.xml
[2010.02.27 22:52:13 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010.02.18 19:28:12 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2010.02.02 18:10:35 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}
[2010.02.18 19:28:07 | 000,023,512 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2010.02.18 19:28:07 | 000,137,176 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2009.10.05 18:34:50 | 000,118,000 | ---- | M] () -- C:\Program Files\Mozilla Firefox\components\qippipe.dll
[2009.11.14 01:47:38 | 000,098,304 | ---- | M] (DivX, Inc) -- C:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
[2010.02.18 19:28:09 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2010.02.02 17:22:07 | 000,140,864 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
[2010.02.02 17:24:07 | 000,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
[2010.02.02 17:21:24 | 000,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
[2010.01.12 21:03:50 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
[2009.12.22 04:24:43 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2009.12.22 04:24:43 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2009.12.22 04:24:43 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2009.12.22 04:24:43 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2009.12.22 04:24:43 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2009.12.22 04:24:43 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml
O1 HOSTS File: ([2010.02.27 21:54:06 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll (Kaspersky Lab)
O3 - HKCU\..\Toolbar\ShellBrowser: (&Adresa) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe (Kaspersky Lab)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKCU..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = [binary data]
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Přidat do blokovaných reklamních lišt - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm ()
O9 - Extra Button: Statisktika ochrany webového provozu - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll (Kaspersky Lab)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\WB: DllName - C:\Program Files\AlienGUIse\fastload.dll - C:\Program Files\AlienGUIse\fastload.dll (Stardock)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Proces mezipaměti kategorií součástí - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\User\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\User\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*
========== Files/Folders - Created Within 14 Days ==========
[2010.02.27 22:51:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\User\Recent
[2010.02.27 22:50:00 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010.02.27 22:42:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010.02.27 21:38:57 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010.02.27 20:03:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2010.02.27 18:29:21 | 000,000,000 | ---D | C] -- C:\Program Files\TrendMicro
[2010.02.26 22:02:09 | 000,000,000 | ---D | C] -- C:\Program Files\RivaTuner v2.24
[2010.02.25 20:28:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Electronic Arts
[2010.02.20 17:37:37 | 000,000,000 | --SD | C] -- C:\Documents and Settings\User\Dokumenty\Obrázky
[2010.02.19 16:27:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Dokumenty\ASUS
[2010.02.19 16:25:09 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstee.sys
[2010.02.19 16:25:08 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax
[2010.02.19 16:25:08 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsink.ax
[2010.02.19 16:25:08 | 000,015,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\streamip.sys
[2010.02.19 16:25:08 | 000,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndisip.sys
[2010.02.19 16:25:07 | 000,011,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\slip.sys
[2010.02.19 16:25:06 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstcodec.sys
[2010.02.19 16:25:05 | 000,085,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nabtsfec.sys
[2010.02.19 16:25:04 | 000,017,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ccdecode.sys
[2010.02.19 16:25:01 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax
[2010.02.19 16:25:01 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kswdmcap.ax
[2010.02.19 16:25:01 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax
[2010.02.19 16:25:01 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kstvtune.ax
[2010.02.19 16:25:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vidcap.ax
[2010.02.19 16:25:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vidcap.ax
[2010.02.19 16:25:00 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vfwwdm32.dll
[2010.02.19 16:25:00 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vfwwdm32.dll
[2010.02.19 16:24:59 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax
[2010.02.19 16:24:59 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksxbar.ax
[2010.02.19 16:24:36 | 000,102,400 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\NetVideo_SBS.ax
[2010.02.19 16:24:35 | 002,101,248 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\ATKDispCPL.dll
[2010.02.19 16:24:35 | 000,253,952 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\ATKKBService.exe
[2010.02.19 16:24:35 | 000,195,968 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\ATKDISP.dll
[2010.02.19 16:24:35 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\devcon.exe
[2010.02.19 16:24:35 | 000,012,416 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\drivers\asusgsb.sys
[2010.02.19 16:24:35 | 000,012,416 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\asusgsb.sys
[2010.02.19 16:24:35 | 000,011,264 | ---- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\ATKOSDMini.DLL
[2010.02.19 16:24:35 | 000,011,136 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\drivers\atkkbnt.sys
[2010.02.19 16:24:35 | 000,010,752 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\drivers\Video3D32.sys
[2010.02.19 16:24:35 | 000,008,704 | ---- | C] (ASMT) -- C:\WINDOWS\System32\drivers\Bravo.sys
[2010.02.19 16:24:34 | 005,434,880 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\ATKOSDX32.dll
[2010.02.19 16:24:34 | 000,795,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\DPInst.exe
[2010.02.19 16:24:34 | 000,036,352 | ---- | C] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\System32\ATKOGL32.dll
[2010.02.19 16:16:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\DNA
[2010.02.19 16:16:49 | 000,000,000 | ---D | C] -- C:\Program Files\DNA
[2010.02.19 16:16:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Data aplikací\DNA
[2010.02.19 14:32:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\CAPCOM
[2010.02.18 23:17:48 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010.02.18 19:27:04 | 000,012,288 | R--- | C] (ASUSTeK Computer Inc.) -- C:\WINDOWS\System32\drivers\EIO_XP.sys
[2010.02.18 19:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\RivaTuner
[2010.02.18 19:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Data aplikací\WinRAR
[2010.02.18 19:05:21 | 000,000,000 | ---D | C] -- C:\Program Files\Software Informer
[2010.02.18 18:44:09 | 000,000,000 | ---D | C] -- C:\Program Files\Downloaded Installations
[2010.02.18 18:22:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\AliensVsPredator
[2010.02.16 19:01:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Data aplikací\Xfire
[2010.02.16 19:00:58 | 000,000,000 | ---D | C] -- C:\Program Files\Xfire
[2010.02.05 22:00:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Data aplikací\TuneUp Software
[2010.02.05 20:34:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Adobe
[2010.02.01 17:22:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\Microsoft
[2010.02.01 17:19:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Data aplikací\Microsoft
[2010.02.01 17:16:37 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Data aplikací\Microsoft
[2010.02.01 17:16:37 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Data aplikací\Microsoft
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 14 Days ==========
[2010.02.27 23:16:25 | 004,718,592 | ---- | M] () -- C:\Documents and Settings\User\NTUSER.DAT
[2010.02.27 23:11:07 | 001,163,318 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.02.27 23:11:07 | 000,482,008 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010.02.27 23:11:07 | 000,481,042 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2010.02.27 23:11:07 | 000,097,980 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2010.02.27 23:11:07 | 000,085,874 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010.02.27 23:10:01 | 000,892,960 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox2.dat
[2010.02.27 23:10:01 | 000,005,180 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox2.idx
[2010.02.27 23:07:18 | 000,000,564 | ---- | M] () -- C:\WINDOWS\tasks\Automatic troubleshooting.job
[2010.02.27 23:06:57 | 000,263,559 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2010.02.27 23:06:57 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010.02.27 23:06:42 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010.02.27 23:06:41 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010.02.27 23:05:17 | 005,798,944 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox.dat
[2010.02.27 23:05:17 | 000,047,432 | -HS- | M] () -- C:\WINDOWS\System32\drivers\fidbox.idx
[2010.02.27 23:05:10 | 000,000,272 | -HS- | M] () -- C:\Documents and Settings\User\ntuser.ini
[2010.02.27 23:05:03 | 016,632,146 | -H-- | M] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\IconCache.db
[2010.02.27 22:50:54 | 000,000,382 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010.02.27 22:37:19 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010.02.27 21:54:06 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010.02.27 21:39:20 | 000,000,293 | RHS- | M] () -- C:\boot.ini
[2010.02.27 14:44:02 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010.02.27 14:43:59 | 000,016,896 | ---- | M] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.02.27 11:02:02 | 005,959,299 | ---- | M] () -- C:\WINDOWS\REGBK01.ZIP
[2010.02.26 22:13:16 | 004,980,736 | ---- | M] () -- C:\Documents and Settings\User\NTUSER.DAT_tureg_old
[2010.02.26 20:15:01 | 000,000,474 | ---- | M] () -- C:\WINDOWS\tasks\Automatická údržba.job
[2010.02.19 15:42:35 | 000,000,338 | ---- | M] () -- C:\WINDOWS\level.ini
[2010.02.18 23:17:48 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010.02.18 19:29:36 | 000,025,933 | ---- | M] () -- C:\WINDOWS\Ascd_tmp.ini
[2010.02.17 23:56:44 | 000,022,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.02.17 23:56:44 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\PnkBstrK.sys
[2010.02.17 23:56:28 | 000,103,736 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010.02.17 23:56:23 | 000,669,184 | ---- | M] () -- C:\WINDOWS\System32\pbsvc.exe
[2010.02.17 23:56:23 | 000,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010.02.16 18:53:16 | 000,000,097 | ---- | M] () -- C:\WINDOWS\tmp2Level.ini
[2010.02.16 18:48:49 | 001,020,991 | ---- | M] () -- C:\WINDOWS\content.csv
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010.02.27 22:50:53 | 000,000,382 | ---- | C] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010.02.27 11:01:29 | 005,959,299 | ---- | C] () -- C:\WINDOWS\REGBK01.ZIP
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdRUS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdKOR.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdJPN.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdCHT.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdCHS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdGER.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdFRA.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\trialatkosdENG.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdRUS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdKOR.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdJPN.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdCHT.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdCHS.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdGER.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdFRA.rc0
[2010.02.19 16:24:35 | 000,303,320 | ---- | C] () -- C:\WINDOWS\System32\atkosdENG.rc0
[2010.02.19 16:24:35 | 000,196,662 | ---- | C] () -- C:\WINDOWS\System32\ATKF16.rc0
[2010.02.19 16:24:35 | 000,196,662 | ---- | C] () -- C:\WINDOWS\System32\ATKF12.rc0
[2010.02.19 16:24:35 | 000,196,653 | ---- | C] () -- C:\WINDOWS\System32\drivers\aVivid.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nVivid.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nStandard.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nAsmedia.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nAdvanced.bin
[2010.02.19 16:24:35 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\aAdvanced.bin
[2010.02.19 16:24:35 | 000,196,582 | ---- | C] () -- C:\WINDOWS\System32\drivers\aStandard.bin
[2010.02.19 16:24:35 | 000,196,582 | ---- | C] () -- C:\WINDOWS\System32\drivers\aAsmedia.bin
[2010.02.19 16:24:35 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asrussian.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\askorean.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asjapan.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\aschs.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asgerman.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\asfrench.dll
[2010.02.19 16:24:35 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\aseng.dll
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\trialatkgft.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\trialatkgeneral.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atksht.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atkgtvt.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atkgft.rc0
[2010.02.19 16:24:35 | 000,033,104 | ---- | C] () -- C:\WINDOWS\System32\atkdst.rc0
[2010.02.19 16:24:35 | 000,024,632 | ---- | C] () -- C:\WINDOWS\System32\atkrec.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkshon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkshoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkgtvon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkgtvoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkdson.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\trialatkdsoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkshon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkshoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkgtvon.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkgtvoff.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkdson.rc0
[2010.02.19 16:24:35 | 000,011,912 | ---- | C] () -- C:\WINDOWS\System32\atkdsoff.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\trialatkgfon.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\trialatkgfoff.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\atkgfon.rc0
[2010.02.19 16:24:35 | 000,009,024 | ---- | C] () -- C:\WINDOWS\System32\atkgfoff.rc0
[2010.02.19 16:24:35 | 000,002,963 | ---- | C] () -- C:\WINDOWS\System32\xvid.inf
[2010.02.19 16:24:35 | 000,001,540 | ---- | C] () -- C:\WINDOWS\System32\ATKF16.rc1
[2010.02.19 16:24:35 | 000,001,540 | ---- | C] () -- C:\WINDOWS\System32\ATKF12.rc1
[2010.02.19 16:24:35 | 000,000,018 | ---- | C] () -- C:\WINDOWS\System32\atkid.ini
[2010.02.19 16:24:34 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\ASCHT.dll
[2010.02.19 16:24:34 | 000,006,697 | ---- | C] () -- C:\WINDOWS\System32\asusgsb.cat
[2010.02.19 16:24:34 | 000,002,414 | ---- | C] () -- C:\WINDOWS\System32\asusgsb.inf
[2010.02.17 23:56:44 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010.02.17 23:56:44 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\PnkBstrK.sys
[2010.02.17 23:56:24 | 000,103,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010.02.17 23:56:23 | 000,669,184 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
[2010.02.17 23:56:23 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010.02.16 18:48:49 | 001,020,991 | ---- | C] () -- C:\WINDOWS\content.csv
[2010.02.16 18:48:40 | 000,000,338 | ---- | C] () -- C:\WINDOWS\level.ini
[2010.02.16 18:48:40 | 000,000,097 | ---- | C] () -- C:\WINDOWS\tmp2Level.ini
[2010.02.05 19:40:38 | 000,023,016 | ---- | C] () -- C:\WINDOWS\System32\smtpctrs.ini
[2010.02.05 19:40:38 | 000,001,008 | ---- | C] () -- C:\WINDOWS\System32\ntfsdrct.ini
[2010.02.05 19:40:17 | 000,058,716 | ---- | C] () -- C:\WINDOWS\System32\w3ctrs.ini
[2010.02.05 19:40:17 | 000,014,691 | ---- | C] () -- C:\WINDOWS\System32\axperf.ini
[2010.02.05 19:40:12 | 000,018,097 | ---- | C] () -- C:\WINDOWS\System32\infoctrs.ini
[2010.02.05 13:37:45 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2010.02.05 13:37:44 | 000,012,400 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2010.02.05 13:37:42 | 000,011,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2010.02.05 13:37:42 | 000,010,216 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2010.02.03 22:12:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010.02.03 22:07:18 | 000,000,034 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2010.02.03 00:04:04 | 000,278,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2010.02.03 00:04:04 | 000,025,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2010.02.02 20:16:39 | 000,000,056 | ---- | C] () -- C:\WINDOWS\wb.ini
[2010.02.02 20:11:53 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010.02.02 17:35:03 | 000,002,304 | ---- | C] () -- C:\WINDOWS\System32\Machnm32.sys
[2010.02.02 17:31:42 | 000,000,025 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2010.02.02 13:06:05 | 000,016,896 | ---- | C] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.02.02 12:57:06 | 000,009,327 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\dBase.EML
[2010.02.02 12:57:06 | 000,000,760 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\setup_ldm.iss
[2010.02.02 09:26:50 | 000,000,390 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010.02.01 17:34:12 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll
[2010.02.01 17:24:36 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2010.02.01 17:24:25 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini
[2010.02.01 17:24:15 | 000,025,933 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2010.02.01 17:24:14 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010.01.22 02:37:16 | 000,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll
[2009.10.05 11:10:18 | 000,007,274 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2005.10.14 11:56:50 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005.10.14 11:56:50 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll
[2005.10.14 11:56:50 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2005.10.14 11:56:50 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll
[2005.10.14 11:56:50 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2005.10.14 11:56:50 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2005.10.14 11:56:50 | 000,155,136 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2005.10.14 11:56:50 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2005.10.14 11:56:48 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll
========== LOP Check ==========
[2010.02.05 19:43:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ASUS OC Profiles
[2010.02.02 20:11:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2010.02.17 16:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\EPU
[2010.02.02 17:46:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Last.fm
[2010.02.01 18:16:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2010.02.01 18:16:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TuneUp Software
[2010.02.01 18:16:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ubisoft
[2010.02.01 18:16:50 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010.02.02 12:57:22 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\User\Data aplikací\.#
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\DAEMON Tools Lite
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\DisplayTune
[2010.02.20 00:53:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\DNA
[2010.02.04 10:53:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\EurekaLog
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Gearbox Software
[2010.02.02 12:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\ICQ
[2010.02.03 15:34:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\IObit
[2010.02.02 12:57:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Leadertech
[2010.02.25 16:14:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\My Battle for Middle-earth Files
[2010.02.18 19:12:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\PeaZip
[2010.02.02 18:09:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\QIP
[2010.02.02 19:43:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\TeamViewer
[2010.02.02 13:01:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Thunderbird
[2010.02.02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Touchstone
[2010.02.02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\TuneUp Software
[2010.02.02 12:57:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\TwoWorldsCP
[2010.02.02 12:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Data aplikací\Ubisoft
[2010.02.27 23:07:18 | 000,000,564 | ---- | M] () -- C:\WINDOWS\Tasks\Automatic troubleshooting.job
[2010.02.26 20:15:01 | 000,000,474 | ---- | M] () -- C:\WINDOWS\Tasks\Automatická údržba.job
[2010.02.27 22:50:54 | 000,000,382 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag.job
========== Purity Check ==========
========== Files - Unicode (All) ==========
[2010.02.02 12:57:54 | 000,000,000 | ---D | M](C:\Documents and Settings\User\Dokumenty\??? ????) -- C:\Documents and Settings\User\Dokumenty\Мои игры
[2010.02.02 12:57:54 | 000,000,000 | ---D | C](C:\Documents and Settings\User\Dokumenty\??? ????) -- C:\Documents and Settings\User\Dokumenty\Мои игры
< End of report >
Re: Zamrznutí PC.
EXTRAS:
OTL Extras logfile created on: 27.2.2010 23:15:29 - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = E:\Dokumenty\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 80,00% Memory free
7,00 Gb Paging File | 7,00 Gb Available in Paging File | 95,00% Paging File free
Paging file location(s): C:\pagefile.sys 4608 4608 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,88 Gb Total Space | 124,77 Gb Free Space | 53,58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 233,76 Gb Total Space | 47,96 Gb Free Space | 20,52% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OEM-9C5652A5A63
Current User Name: User
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [+ Add to separate .7Z] -- "C:\Program Files\PeaZip\PEAZIP.EXE" "-add2separate7z" "%1" (Giorgio Tani)
Directory [+ Add to separate .ZIP] -- "C:\Program Files\PeaZip\PEAZIP.EXE" "-add2separatezip" "%1" (Giorgio Tani)
Directory [+ Add to separate archive(s)] -- "C:\Program Files\PeaZip\PEAZIP.EXE" "-add2archive" "%1" (Giorgio Tani)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "%programfiles%\internet explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
"" =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files\Kaspersky Internet Security 2009\Czech\setup.exe" = C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files\Kaspersky Internet Security 2009\Czech\setup.exe:*:Enabled:Kaspersky Internet Security 2009 Setup -- (Kaspersky Lab)
"C:\Program Files\Steam\Steam.exe" = C:\Program Files\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"C:\Program Files\Skype\Plugin Manager\skypePM.exe" = C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager -- (Skype Technologies)
"C:\Program Files\Mass Effect 2\Binaries\MassEffect2.exe" = C:\Program Files\Mass Effect 2\Binaries\MassEffect2.exe:*:Enabled:Mass Effect 2 Hra -- (BioWare)
"C:\Program Files\Mass Effect 2\MassEffect2Launcher.exe" = C:\Program Files\Mass Effect 2\MassEffect2Launcher.exe:*:Enabled:Mass Effect 2 Spustit -- (BioWare)
"C:\Program Files\Mass Effect\Binaries\MassEffect.exe" = C:\Program Files\Mass Effect\Binaries\MassEffect.exe:*:Enabled:Mass Effect Game -- (BioWare)
"C:\Program Files\Mass Effect\MassEffectLauncher.exe" = C:\Program Files\Mass Effect\MassEffectLauncher.exe:*:Enabled:Mass Effect Launcher -- (BioWare)
"E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe" = E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:*:Enabled:Crysis_32 -- (Crytek GmbH)
"E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe" = E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:*:Enabled:CrysisDedicatedServer_32 -- (Crytek GmbH)
"C:\WINDOWS\system32\PnkBstrA.exe" = C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA -- ()
"C:\WINDOWS\system32\PnkBstrB.exe" = C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB -- ()
"C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_Launcher.exe" = C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_Launcher.exe:*:Enabled:Aliens vs Predator -- (Sega Europe Limited)
"C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_DX11.exe" = C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_DX11.exe:*:Enabled:Aliens vs Predator -- (Sega Europe Limited)
"C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP.exe" = C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP.exe:*:Enabled:Aliens vs Predator -- (Sega Europe Limited)
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe" = C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- ()
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe" = C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe:*:Enabled:Call of Duty: Modern Warfare 2 -- ()
"E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe" = E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe:*:Enabled:Assassin's Creed Dx9 -- (Ubisoft)
"E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe" = E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe:*:Enabled:Assassin's Creed Dx10 -- (Ubisoft)
"E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe" = E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe:*:Enabled:Assassin's Creed Update -- (Ubisoft)
"C:\Program Files\DNA\btdna.exe" = C:\Program Files\DNA\btdna.exe:*:Enabled:DNA -- (BitTorrent, Inc.)
"C:\Program Files\Steam\steamapps\common\left 4 dead 2\left4dead2.exe" = C:\Program Files\Steam\steamapps\common\left 4 dead 2\left4dead2.exe:*:Enabled:Left 4 Dead 2 -- ()
"C:\Program Files\Steam\steamapps\common\left 4 dead\left4dead.exe" = C:\Program Files\Steam\steamapps\common\left 4 dead\left4dead.exe:*:Enabled:Left 4 Dead -- ()
"E:\Program Files\LOTR The Battle for Middle-Earth(tm)\game.dat" = E:\Program Files\LOTR The Battle for Middle-Earth(tm)\game.dat:*:Enabled:Battle for Middle-earth -- ()
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000E79B7-E725-4F01-870A-C12942B7F8E4}" = Crysis(R)
"{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}" = Pivot Software
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{0ADCA30E-AD85-493B-8EF7-A63B5E7184EB}_is1" = The Saboteur
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0F9196C6-58B4-445B-B56E-B1200FECC151}" = Microsoft Bootvis
"{129DDEC1-A6A3-3D60-AABE-76E6E5334922}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CSY
"{1B0FBB9A-995D-47cd-87CD-13E68B676E4F}" = Mass Effect
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{29A47E79-7287-4C52-9667-B4CDEEE14B58}" = T.Probe
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite
"{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}" = ASUS Gamer OSD
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver
"{491D92A9-69CA-4EB4-81D3-0106F9337957}" = TurboV EVO
"{52B65911-1559-4ED5-9461-46957FDD48CD}" = Borderlands
"{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
"{56B83336-FBC1-4C46-8613-90A9E3B440D6}" = EPU-6 Engine
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5A2BC38A-406C-4A5B-BF45-6991F9A05325}_is1" = PeaZip 2.9.1
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{628C3D50-F524-4C49-A958-672CE7953756}" = Властелин Колец™ - Противостояние™
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6FE8B722-4D7E-3CD7-BB3A-3AD1684B1295}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - CSY
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74DCC43B-33C9-3389-BD0D-33EB37973657}" = Microsoft .NET Framework 3.5 Language Pack - csy
"{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}" = Mass Effect 2
"{784CFD4D-1BA5-4DB5-9377-84DAF0D19EF1}" = WinXP Manager
"{791B2FDA-A428-47C6-95D9-56A107C73257}" = OC Gear Driver
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{8CB14A64-CEF4-4C8F-B1C8-1C3B8752CB55}" = Kaspersky Internet Security 2009
"{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed
"{90280405-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional s aplikací FrontPage
"{99AD9D6D-A456-49EE-8360-F22EE7AA1272}" = Express Gate
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B4E6CB9-E54D-47F7-A414-E2D5740E1029}" = Nero 7 Essentials
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A586DC50-B18D-48FB-B7CC-A598200457C2}" = Acer eDisplay Management
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities
"{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = Devil May Cry 4
"{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6}" = NVIDIA PhysX
"{E43ED0A0-C85E-40F0-807C-6A8A9D2FAEF3}_is1" = King’s Bounty (Pouze odstranit)
"{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = Zaklínač
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint
"{FE3997D3-6B56-4AC4-A99C-9DDFC45359BF}" = TuneUp Utilities Language Pack (en-US)
"3FA1705966809259F916AF817C59B4F389F4572C" = Balíček ovladače systému Windows - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"AlienGUIse Theme Manager" = AlienGUIse Theme Manager
"CCleaner" = CCleaner
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.53.1
"Defraggler" = Defraggler
"DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
"Dolphin Pod_is1" = Dolphin Pod 0.3
"EXPERTool_is1" = EXPERTool 7.6
"Game Booster_is1" = Game Booster
"ie8" = Windows Internet Explorer 8
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Ovladače zařízení
"InstallWIX_{8CB14A64-CEF4-4C8F-B1C8-1C3B8752CB55}" = Kaspersky Internet Security 2009
"LastFM_is1" = Last.fm 1.5.4.24567
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 Language Pack - csy" = Microsoft .NET Framework 3.5 Language Pack - CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.5.
" = Mozilla Firefox (3.5.
"Mozilla Thunderbird (3.0.1)" = Mozilla Thunderbird (3.0.1)
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"Pack Vista Inspirat 2" = Pack Vista Inspirat 2 1.0
"PunkBusterSvc" = PunkBuster Services
"RealPlayer 12.0" = RealPlayer
"Recuva" = Recuva
"RivaTuner" = RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
"Smart Defrag_is1" = Smart Defrag
"Speccy" = Speccy
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Steam App 440" = Team Fortress 2
"Steam App 500" = Left 4 Dead
"Steam App 550" = Left 4 Dead 2
"TuneUp Utilities" = TuneUp Utilities
"VLC media player" = VLC media player 1.0.3
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"WinRAR archiver" = WinRAR archiver
"Xfire" = Xfire (remove only)
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BitTorrent DNA" = DNA
"QIP Infium" = QIP Infium 2.0.9032 RC4
"Winamp Detect" = Winamp Detector Plug-in
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 20.2.2010 13:09:55 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 20.2.2010 13:10:18 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 20.2.2010 14:15:49 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 20.2.2010 14:21:48 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4124
Description = Index obsahu v c:\system volume information\catalog.wci je poškozen.
Ukončete a restartujte službu Indexing Service (cisvc).
Error - 20.2.2010 14:21:48 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4126
Description = Probíhá čištění poškozených metadat indexu obsahu v c:\system volume
information\catalog.wci. Všechny dokumenty budou znovu filtrovány a index bude automaticky
obnoven novým.
Error - 21.2.2010 7:13:07 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4124
Description = Index obsahu v c:\system volume information\catalog.wci je poškozen.
Ukončete a restartujte službu Indexing Service (cisvc).
Error - 21.2.2010 7:13:07 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4126
Description = Probíhá čištění poškozených metadat indexu obsahu v c:\system volume
information\catalog.wci. Všechny dokumenty budou znovu filtrovány a index bude automaticky
obnoven novým.
Error - 21.2.2010 7:27:49 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4126
Description = Probíhá čištění poškozených metadat indexu obsahu v c:\system volume
information\catalog.wci. Všechny dokumenty budou znovu filtrovány a index bude automaticky
obnoven novým.
Error - 21.2.2010 17:00:11 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 22.2.2010 8:00:31 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
[ System Events ]
Error - 5.2.2010 14:22:15 | Computer Name = OEM-9C5652A5A63 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby TuneUp.UtilitiesSvc
s argumenty za účelem spuštění serveru: {FCA02D56-BF9D-4591-AD41-E59AF763C64A}
Error - 5.2.2010 14:22:24 | Computer Name = OEM-9C5652A5A63 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby TuneUp.UtilitiesSvc
s argumenty za účelem spuštění serveru: {2509ABBC-871E-42E5-A27B-F7DA394B1897}
Error - 5.2.2010 14:22:26 | Computer Name = OEM-9C5652A5A63 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby TuneUp.UtilitiesSvc
s argumenty za účelem spuštění serveru: {FCA02D56-BF9D-4591-AD41-E59AF763C64A}
Error - 9.2.2010 8:51:30 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.3 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 11.2.2010 7:49:47 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 13.2.2010 5:27:24 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 14.2.2010 5:51:13 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 14.2.2010 8:54:00 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 16.2.2010 11:12:20 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 17.2.2010 10:54:26 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
< End of report >
OTL Extras logfile created on: 27.2.2010 23:15:29 - Run 1
OTL by OldTimer - Version 3.1.30.3 Folder = E:\Dokumenty\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 80,00% Memory free
7,00 Gb Paging File | 7,00 Gb Available in Paging File | 95,00% Paging File free
Paging file location(s): C:\pagefile.sys 4608 4608 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,88 Gb Total Space | 124,77 Gb Free Space | 53,58% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 233,76 Gb Total Space | 47,96 Gb Free Space | 20,52% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OEM-9C5652A5A63
Current User Name: User
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 14 Days
Output = Minimal
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [+ Add to separate .7Z] -- "C:\Program Files\PeaZip\PEAZIP.EXE" "-add2separate7z" "%1" (Giorgio Tani)
Directory [+ Add to separate .ZIP] -- "C:\Program Files\PeaZip\PEAZIP.EXE" "-add2separatezip" "%1" (Giorgio Tani)
Directory [+ Add to separate archive(s)] -- "C:\Program Files\PeaZip\PEAZIP.EXE" "-add2archive" "%1" (Giorgio Tani)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "%programfiles%\internet explorer\iexplore.exe" (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
"" =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files\Kaspersky Internet Security 2009\Czech\setup.exe" = C:\Documents and Settings\All Users\Data aplikací\Kaspersky Lab Setup Files\Kaspersky Internet Security 2009\Czech\setup.exe:*:Enabled:Kaspersky Internet Security 2009 Setup -- (Kaspersky Lab)
"C:\Program Files\Steam\Steam.exe" = C:\Program Files\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"C:\Program Files\Skype\Plugin Manager\skypePM.exe" = C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager -- (Skype Technologies)
"C:\Program Files\Mass Effect 2\Binaries\MassEffect2.exe" = C:\Program Files\Mass Effect 2\Binaries\MassEffect2.exe:*:Enabled:Mass Effect 2 Hra -- (BioWare)
"C:\Program Files\Mass Effect 2\MassEffect2Launcher.exe" = C:\Program Files\Mass Effect 2\MassEffect2Launcher.exe:*:Enabled:Mass Effect 2 Spustit -- (BioWare)
"C:\Program Files\Mass Effect\Binaries\MassEffect.exe" = C:\Program Files\Mass Effect\Binaries\MassEffect.exe:*:Enabled:Mass Effect Game -- (BioWare)
"C:\Program Files\Mass Effect\MassEffectLauncher.exe" = C:\Program Files\Mass Effect\MassEffectLauncher.exe:*:Enabled:Mass Effect Launcher -- (BioWare)
"E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe" = E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:*:Enabled:Crysis_32 -- (Crytek GmbH)
"E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe" = E:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:*:Enabled:CrysisDedicatedServer_32 -- (Crytek GmbH)
"C:\WINDOWS\system32\PnkBstrA.exe" = C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA -- ()
"C:\WINDOWS\system32\PnkBstrB.exe" = C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB -- ()
"C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_Launcher.exe" = C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_Launcher.exe:*:Enabled:Aliens vs Predator -- (Sega Europe Limited)
"C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_DX11.exe" = C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP_DX11.exe:*:Enabled:Aliens vs Predator -- (Sega Europe Limited)
"C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP.exe" = C:\Program Files\Steam\steamapps\common\aliens vs predator\AvP.exe:*:Enabled:Aliens vs Predator -- (Sega Europe Limited)
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe" = C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- ()
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe" = C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe:*:Enabled:Call of Duty: Modern Warfare 2 -- ()
"E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe" = E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe:*:Enabled:Assassin's Creed Dx9 -- (Ubisoft)
"E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe" = E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe:*:Enabled:Assassin's Creed Dx10 -- (Ubisoft)
"E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe" = E:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe:*:Enabled:Assassin's Creed Update -- (Ubisoft)
"C:\Program Files\DNA\btdna.exe" = C:\Program Files\DNA\btdna.exe:*:Enabled:DNA -- (BitTorrent, Inc.)
"C:\Program Files\Steam\steamapps\common\left 4 dead 2\left4dead2.exe" = C:\Program Files\Steam\steamapps\common\left 4 dead 2\left4dead2.exe:*:Enabled:Left 4 Dead 2 -- ()
"C:\Program Files\Steam\steamapps\common\left 4 dead\left4dead.exe" = C:\Program Files\Steam\steamapps\common\left 4 dead\left4dead.exe:*:Enabled:Left 4 Dead -- ()
"E:\Program Files\LOTR The Battle for Middle-Earth(tm)\game.dat" = E:\Program Files\LOTR The Battle for Middle-Earth(tm)\game.dat:*:Enabled:Battle for Middle-earth -- ()
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{000E79B7-E725-4F01-870A-C12942B7F8E4}" = Crysis(R)
"{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}" = Pivot Software
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}" = HiJackThis
"{0ADCA30E-AD85-493B-8EF7-A63B5E7184EB}_is1" = The Saboteur
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}" = SDK
"{0F9196C6-58B4-445B-B56E-B1200FECC151}" = Microsoft Bootvis
"{129DDEC1-A6A3-3D60-AABE-76E6E5334922}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CSY
"{1B0FBB9A-995D-47cd-87CD-13E68B676E4F}" = Mass Effect
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{29A47E79-7287-4C52-9667-B4CDEEE14B58}" = T.Probe
"{3101CB58-3482-4D21-AF1A-7057FC935355}" = KhalInstallWrapper
"{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite
"{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}" = ASUS Gamer OSD
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMicron JMB36X Driver
"{491D92A9-69CA-4EB4-81D3-0106F9337957}" = TurboV EVO
"{52B65911-1559-4ED5-9461-46957FDD48CD}" = Borderlands
"{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
"{56B83336-FBC1-4C46-8613-90A9E3B440D6}" = EPU-6 Engine
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5A2BC38A-406C-4A5B-BF45-6991F9A05325}_is1" = PeaZip 2.9.1
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{628C3D50-F524-4C49-A958-672CE7953756}" = Властелин Колец™ - Противостояние™
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{6FE8B722-4D7E-3CD7-BB3A-3AD1684B1295}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - CSY
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74DCC43B-33C9-3389-BD0D-33EB37973657}" = Microsoft .NET Framework 3.5 Language Pack - csy
"{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}" = Mass Effect 2
"{784CFD4D-1BA5-4DB5-9377-84DAF0D19EF1}" = WinXP Manager
"{791B2FDA-A428-47C6-95D9-56A107C73257}" = OC Gear Driver
"{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
"{8CB14A64-CEF4-4C8F-B1C8-1C3B8752CB55}" = Kaspersky Internet Security 2009
"{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed
"{90280405-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional s aplikací FrontPage
"{99AD9D6D-A456-49EE-8360-F22EE7AA1272}" = Express Gate
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B4E6CB9-E54D-47F7-A414-E2D5740E1029}" = Nero 7 Essentials
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A586DC50-B18D-48FB-B7CC-A598200457C2}" = Acer eDisplay Management
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3
"{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities
"{D4E5A687-797D-44B1-8F96-4FD7A24166A9}" = Devil May Cry 4
"{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6}" = NVIDIA PhysX
"{E43ED0A0-C85E-40F0-807C-6A8A9D2FAEF3}_is1" = King’s Bounty (Pouze odstranit)
"{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}" = Zaklínač
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = Logitech SetPoint
"{FE3997D3-6B56-4AC4-A99C-9DDFC45359BF}" = TuneUp Utilities Language Pack (en-US)
"3FA1705966809259F916AF817C59B4F389F4572C" = Balíček ovladače systému Windows - Advanced Micro Devices (AmdK8) Processor (05/27/2006 1.3.2.0)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"AlienGUIse Theme Manager" = AlienGUIse Theme Manager
"CCleaner" = CCleaner
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.53.1
"Defraggler" = Defraggler
"DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
"Dolphin Pod_is1" = Dolphin Pod 0.3
"EXPERTool_is1" = EXPERTool 7.6
"Game Booster_is1" = Game Booster
"ie8" = Windows Internet Explorer 8
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Ovladače zařízení
"InstallWIX_{8CB14A64-CEF4-4C8F-B1C8-1C3B8752CB55}" = Kaspersky Internet Security 2009
"LastFM_is1" = Last.fm 1.5.4.24567
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 Language Pack - csy" = Microsoft .NET Framework 3.5 Language Pack - CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.5.


"Mozilla Thunderbird (3.0.1)" = Mozilla Thunderbird (3.0.1)
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"Pack Vista Inspirat 2" = Pack Vista Inspirat 2 1.0
"PunkBusterSvc" = PunkBuster Services
"RealPlayer 12.0" = RealPlayer
"Recuva" = Recuva
"RivaTuner" = RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
"Smart Defrag_is1" = Smart Defrag
"Speccy" = Speccy
"Steam App 10180" = Call of Duty: Modern Warfare 2
"Steam App 10190" = Call of Duty: Modern Warfare 2 - Multiplayer
"Steam App 440" = Team Fortress 2
"Steam App 500" = Left 4 Dead
"Steam App 550" = Left 4 Dead 2
"TuneUp Utilities" = TuneUp Utilities
"VLC media player" = VLC media player 1.0.3
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"WinRAR archiver" = WinRAR archiver
"Xfire" = Xfire (remove only)
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BitTorrent DNA" = DNA
"QIP Infium" = QIP Infium 2.0.9032 RC4
"Winamp Detect" = Winamp Detector Plug-in
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 20.2.2010 13:09:55 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 20.2.2010 13:10:18 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 20.2.2010 14:15:49 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 20.2.2010 14:21:48 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4124
Description = Index obsahu v c:\system volume information\catalog.wci je poškozen.
Ukončete a restartujte službu Indexing Service (cisvc).
Error - 20.2.2010 14:21:48 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4126
Description = Probíhá čištění poškozených metadat indexu obsahu v c:\system volume
information\catalog.wci. Všechny dokumenty budou znovu filtrovány a index bude automaticky
obnoven novým.
Error - 21.2.2010 7:13:07 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4124
Description = Index obsahu v c:\system volume information\catalog.wci je poškozen.
Ukončete a restartujte službu Indexing Service (cisvc).
Error - 21.2.2010 7:13:07 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4126
Description = Probíhá čištění poškozených metadat indexu obsahu v c:\system volume
information\catalog.wci. Všechny dokumenty budou znovu filtrovány a index bude automaticky
obnoven novým.
Error - 21.2.2010 7:27:49 | Computer Name = OEM-9C5652A5A63 | Source = Ci | ID = 4126
Description = Probíhá čištění poškozených metadat indexu obsahu v c:\system volume
information\catalog.wci. Všechny dokumenty budou znovu filtrovány a index bude automaticky
obnoven novým.
Error - 21.2.2010 17:00:11 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
Error - 22.2.2010 8:00:31 | Computer Name = OEM-9C5652A5A63 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.
[ System Events ]
Error - 5.2.2010 14:22:15 | Computer Name = OEM-9C5652A5A63 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby TuneUp.UtilitiesSvc
s argumenty za účelem spuštění serveru: {FCA02D56-BF9D-4591-AD41-E59AF763C64A}
Error - 5.2.2010 14:22:24 | Computer Name = OEM-9C5652A5A63 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby TuneUp.UtilitiesSvc
s argumenty za účelem spuštění serveru: {2509ABBC-871E-42E5-A27B-F7DA394B1897}
Error - 5.2.2010 14:22:26 | Computer Name = OEM-9C5652A5A63 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1058 při pokusu o spuštění služby TuneUp.UtilitiesSvc
s argumenty za účelem spuštění serveru: {FCA02D56-BF9D-4591-AD41-E59AF763C64A}
Error - 9.2.2010 8:51:30 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.3 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 11.2.2010 7:49:47 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 13.2.2010 5:27:24 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 14.2.2010 5:51:13 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 14.2.2010 8:54:00 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 16.2.2010 11:12:20 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
Error - 17.2.2010 10:54:26 | Computer Name = OEM-9C5652A5A63 | Source = Dhcp | ID = 1002
Description = Zapůjčení adresy IP 10.0.0.2 pro síťovou kartu s adresou 90E6BA0ADAAF
byla serverem DHCP 10.0.0.138 odmítnuta. (Server DHCP odeslal zprávu DHCPNACK).
< End of report >
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 20 hostů